vulnerability
Oracle Linux: CVE-2019-8649: ELSA-2020-4035: webkitgtk4 security, bug fix, and enhancement update (MODERATE) (Multiple Advisories)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
6 | (AV:N/AC:L/Au:N/C:P/I:P/A:N) | Aug 29, 2019 | Oct 7, 2020 | Nov 30, 2024 |
Severity
6
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:N)
Published
Aug 29, 2019
Added
Oct 7, 2020
Modified
Nov 30, 2024
Description
A logic issue existed in the handling of synchronous page loads. This issue was addressed with improved state management. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to universal cross site scripting.
Solution(s)
oracle-linux-upgrade-webkitgtk4oracle-linux-upgrade-webkitgtk4-develoracle-linux-upgrade-webkitgtk4-docoracle-linux-upgrade-webkitgtk4-jscoracle-linux-upgrade-webkitgtk4-jsc-devel

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.