TROYANOSYVIRUS
Back to CVEs

CVE-2018-12293

N/A

Description

The getImageData function in the ImageBufferCairo class in WebCore/platform/graphics/cairo/ImageBufferCairo.cpp in WebKit, as used in WebKitGTK+ prior to version 2.20.3 and WPE WebKit prior to version 2.20.1, is vulnerable to a heap-based buffer overflow triggered by an integer overflow, which could be abused by crafted HTML content.

CVE Details

CVSS v3.1 ScoreN/A
Published6/19/2018
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

canonical:ubuntu_linuxwebkitgtk:webkitgtk\+wpewebkit:wpe_webkit

Weaknesses (CWE)

CWE-190CWE-787

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.