vulnerability
CentOS Linux: CVE-2019-8649: Moderate: webkitgtk4 security, bug fix, and enhancement update (CESA-2020:4035)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
4 | (AV:N/AC:M/Au:N/C:N/I:P/A:N) | Dec 18, 2019 | Oct 1, 2020 | May 25, 2023 |
Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Dec 18, 2019
Added
Oct 1, 2020
Modified
May 25, 2023
Description
A logic issue existed in the handling of synchronous page loads. This issue was addressed with improved state management. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to universal cross site scripting.
Solution(s)
centos-upgrade-webkitgtk4centos-upgrade-webkitgtk4-debuginfocentos-upgrade-webkitgtk4-develcentos-upgrade-webkitgtk4-doccentos-upgrade-webkitgtk4-jsccentos-upgrade-webkitgtk4-jsc-devel
References

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.