TROYANOSYVIRUS
Voltar para CVEs

CVE-2018-12293

N/A

Descricao

The getImageData function in the ImageBufferCairo class in WebCore/platform/graphics/cairo/ImageBufferCairo.cpp in WebKit, as used in WebKitGTK+ prior to version 2.20.3 and WPE WebKit prior to version 2.20.1, is vulnerable to a heap-based buffer overflow triggered by an integer overflow, which could be abused by crafted HTML content.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado6/19/2018
Ultima modificacao11/21/2024
Fontenvd
Avistamentos honeypot0

Produtos afetados

canonical:ubuntu_linuxwebkitgtk:webkitgtk\+wpewebkit:wpe_webkit

Fraquezas (CWE)

CWE-190CWE-787

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.