vulnerability

Amazon Linux AMI 2: CVE-2022-46705: Security patch for webkitgtk4 (ALAS-2024-2427)

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Feb 27, 2023
Added
Jan 23, 2024
Modified
Jan 28, 2025

Description

A spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, Safari 16.2. Visiting a malicious website may lead to address bar spoofing.

Solution(s)

amazon-linux-ami-2-upgrade-webkitgtk4amazon-linux-ami-2-upgrade-webkitgtk4-debuginfoamazon-linux-ami-2-upgrade-webkitgtk4-develamazon-linux-ami-2-upgrade-webkitgtk4-jscamazon-linux-ami-2-upgrade-webkitgtk4-jsc-devel
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.