vulnerability

Red Hat: CVE-2018-11713: Moderate: GNOME security, bug fix, and enhancement update (RHSA-2018:3140)

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
06/04/2018
Added
02/12/2021
Modified
03/03/2021

Description

WebCore/platform/network/soup/SocketStreamHandleImplSoup.cpp in the libsoup network backend of WebKit, as used in WebKitGTK+ prior to version 2.20.0 or without libsoup 2.62.0, unexpectedly failed to use system proxy settings for WebSocket connections. As a result, users could be deanonymized by crafted web sites via a WebSocket connection.

Solution(s)

redhat-upgrade-accountsserviceredhat-upgrade-accountsservice-debuginforedhat-upgrade-accountsservice-develredhat-upgrade-accountsservice-libsredhat-upgrade-adwaita-cursor-themeredhat-upgrade-adwaita-gtk2-themeredhat-upgrade-adwaita-icon-themeredhat-upgrade-adwaita-icon-theme-develredhat-upgrade-appstream-dataredhat-upgrade-at-spi2-atkredhat-upgrade-at-spi2-atk-debuginforedhat-upgrade-at-spi2-atk-develredhat-upgrade-at-spi2-coreredhat-upgrade-at-spi2-core-debuginforedhat-upgrade-at-spi2-core-develredhat-upgrade-baobabredhat-upgrade-baobab-debuginforedhat-upgrade-boltredhat-upgrade-bolt-debuginforedhat-upgrade-braseroredhat-upgrade-brasero-debuginforedhat-upgrade-brasero-develredhat-upgrade-brasero-libsredhat-upgrade-brasero-nautilusredhat-upgrade-cairoredhat-upgrade-cairo-debuginforedhat-upgrade-cairo-develredhat-upgrade-cairo-gobjectredhat-upgrade-cairo-gobject-develredhat-upgrade-cairo-toolsredhat-upgrade-cheeseredhat-upgrade-cheese-debuginforedhat-upgrade-cheese-libsredhat-upgrade-cheese-libs-develredhat-upgrade-clutter-gst3redhat-upgrade-clutter-gst3-debuginforedhat-upgrade-clutter-gst3-develredhat-upgrade-compat-exiv2-023redhat-upgrade-compat-exiv2-023-debuginforedhat-upgrade-compat-libical1redhat-upgrade-control-centerredhat-upgrade-control-center-debuginforedhat-upgrade-control-center-filesystemredhat-upgrade-dconfredhat-upgrade-dconf-debuginforedhat-upgrade-dconf-develredhat-upgrade-dconf-editorredhat-upgrade-dconf-editor-debuginforedhat-upgrade-devhelpredhat-upgrade-devhelp-debuginforedhat-upgrade-devhelp-develredhat-upgrade-devhelp-libsredhat-upgrade-ekigaredhat-upgrade-ekiga-debuginforedhat-upgrade-empathyredhat-upgrade-empathy-debuginforedhat-upgrade-eogredhat-upgrade-eog-debuginforedhat-upgrade-eog-develredhat-upgrade-evinceredhat-upgrade-evince-browser-pluginredhat-upgrade-evince-debuginforedhat-upgrade-evince-develredhat-upgrade-evince-dviredhat-upgrade-evince-libsredhat-upgrade-evince-nautilusredhat-upgrade-evolutionredhat-upgrade-evolution-bogofilterredhat-upgrade-evolution-data-serverredhat-upgrade-evolution-data-server-debuginforedhat-upgrade-evolution-data-server-develredhat-upgrade-evolution-data-server-docredhat-upgrade-evolution-data-server-langpacksredhat-upgrade-evolution-data-server-perlredhat-upgrade-evolution-data-server-testsredhat-upgrade-evolution-debuginforedhat-upgrade-evolution-develredhat-upgrade-evolution-devel-docsredhat-upgrade-evolution-ewsredhat-upgrade-evolution-ews-debuginforedhat-upgrade-evolution-ews-langpacksredhat-upgrade-evolution-helpredhat-upgrade-evolution-langpacksredhat-upgrade-evolution-mapiredhat-upgrade-evolution-mapi-debuginforedhat-upgrade-evolution-mapi-langpacksredhat-upgrade-evolution-pstredhat-upgrade-evolution-spamassassinredhat-upgrade-evolution-testsredhat-upgrade-file-rollerredhat-upgrade-file-roller-debuginforedhat-upgrade-file-roller-nautilusredhat-upgrade-flatpakredhat-upgrade-flatpak-builderredhat-upgrade-flatpak-debuginforedhat-upgrade-flatpak-develredhat-upgrade-flatpak-libsredhat-upgrade-folksredhat-upgrade-folks-debuginforedhat-upgrade-folks-develredhat-upgrade-folks-toolsredhat-upgrade-fontconfigredhat-upgrade-fontconfig-debuginforedhat-upgrade-fontconfig-develredhat-upgrade-fontconfig-devel-docredhat-upgrade-freetyperedhat-upgrade-freetype-debuginforedhat-upgrade-freetype-demosredhat-upgrade-freetype-develredhat-upgrade-fribidiredhat-upgrade-fribidi-debuginforedhat-upgrade-fribidi-develredhat-upgrade-fwupdredhat-upgrade-fwupd-debuginforedhat-upgrade-fwupd-develredhat-upgrade-fwupdateredhat-upgrade-fwupdate-debuginforedhat-upgrade-fwupdate-develredhat-upgrade-fwupdate-efiredhat-upgrade-fwupdate-libsredhat-upgrade-gcrredhat-upgrade-gcr-debuginforedhat-upgrade-gcr-develredhat-upgrade-gdk-pixbuf2redhat-upgrade-gdk-pixbuf2-debuginforedhat-upgrade-gdk-pixbuf2-develredhat-upgrade-gdk-pixbuf2-testsredhat-upgrade-gdmredhat-upgrade-gdm-debuginforedhat-upgrade-gdm-develredhat-upgrade-gdm-pam-extensions-develredhat-upgrade-geditredhat-upgrade-gedit-debuginforedhat-upgrade-gedit-develredhat-upgrade-gedit-plugin-bookmarksredhat-upgrade-gedit-plugin-bracketcompletionredhat-upgrade-gedit-plugin-charmapredhat-upgrade-gedit-plugin-codecommentredhat-upgrade-gedit-plugin-colorpickerredhat-upgrade-gedit-plugin-colorschemerredhat-upgrade-gedit-plugin-commanderredhat-upgrade-gedit-plugin-drawspacesredhat-upgrade-gedit-plugin-findinfilesredhat-upgrade-gedit-plugin-joinlinesredhat-upgrade-gedit-plugin-multieditredhat-upgrade-gedit-plugin-smartspacesredhat-upgrade-gedit-plugin-synctexredhat-upgrade-gedit-plugin-terminalredhat-upgrade-gedit-plugin-textsizeredhat-upgrade-gedit-plugin-translateredhat-upgrade-gedit-plugin-wordcompletionredhat-upgrade-gedit-pluginsredhat-upgrade-gedit-plugins-dataredhat-upgrade-gedit-plugins-debuginforedhat-upgrade-geoclue2redhat-upgrade-geoclue2-debuginforedhat-upgrade-geoclue2-demosredhat-upgrade-geoclue2-develredhat-upgrade-geoclue2-libsredhat-upgrade-geocode-glibredhat-upgrade-geocode-glib-debuginforedhat-upgrade-geocode-glib-develredhat-upgrade-gjsredhat-upgrade-gjs-debuginforedhat-upgrade-gjs-develredhat-upgrade-gjs-testsredhat-upgrade-gladeredhat-upgrade-glade-debuginforedhat-upgrade-glade-develredhat-upgrade-glade-libsredhat-upgrade-glib-networkingredhat-upgrade-glib-networking-debuginforedhat-upgrade-glib-networking-testsredhat-upgrade-glib2redhat-upgrade-glib2-debuginforedhat-upgrade-glib2-develredhat-upgrade-glib2-docredhat-upgrade-glib2-famredhat-upgrade-glib2-staticredhat-upgrade-glib2-testsredhat-upgrade-glibmm24redhat-upgrade-glibmm24-debuginforedhat-upgrade-glibmm24-develredhat-upgrade-glibmm24-docredhat-upgrade-gnome-bluetoothredhat-upgrade-gnome-bluetooth-debuginforedhat-upgrade-gnome-bluetooth-libsredhat-upgrade-gnome-bluetooth-libs-develredhat-upgrade-gnome-boxesredhat-upgrade-gnome-boxes-debuginforedhat-upgrade-gnome-calculatorredhat-upgrade-gnome-calculator-debuginforedhat-upgrade-gnome-classic-sessionredhat-upgrade-gnome-clocksredhat-upgrade-gnome-clocks-debuginforedhat-upgrade-gnome-color-managerredhat-upgrade-gnome-color-manager-debuginforedhat-upgrade-gnome-contactsredhat-upgrade-gnome-contacts-debuginforedhat-upgrade-gnome-desktop3redhat-upgrade-gnome-desktop3-debuginforedhat-upgrade-gnome-desktop3-develredhat-upgrade-gnome-desktop3-testsredhat-upgrade-gnome-devel-docsredhat-upgrade-gnome-dictionaryredhat-upgrade-gnome-dictionary-debuginforedhat-upgrade-gnome-disk-utilityredhat-upgrade-gnome-disk-utility-debuginforedhat-upgrade-gnome-documentsredhat-upgrade-gnome-documents-debuginforedhat-upgrade-gnome-documents-libsredhat-upgrade-gnome-font-viewerredhat-upgrade-gnome-font-viewer-debuginforedhat-upgrade-gnome-getting-started-docsredhat-upgrade-gnome-getting-started-docs-csredhat-upgrade-gnome-getting-started-docs-deredhat-upgrade-gnome-getting-started-docs-esredhat-upgrade-gnome-getting-started-docs-frredhat-upgrade-gnome-getting-started-docs-glredhat-upgrade-gnome-getting-started-docs-huredhat-upgrade-gnome-getting-started-docs-itredhat-upgrade-gnome-getting-started-docs-plredhat-upgrade-gnome-getting-started-docs-pt_brredhat-upgrade-gnome-getting-started-docs-ruredhat-upgrade-gnome-initial-setupredhat-upgrade-gnome-initial-setup-debuginforedhat-upgrade-gnome-keyringredhat-upgrade-gnome-keyring-debuginforedhat-upgrade-gnome-keyring-pamredhat-upgrade-gnome-online-accountsredhat-upgrade-gnome-online-accounts-debuginforedhat-upgrade-gnome-online-accounts-develredhat-upgrade-gnome-online-minersredhat-upgrade-gnome-online-miners-debuginforedhat-upgrade-gnome-packagekitredhat-upgrade-gnome-packagekit-commonredhat-upgrade-gnome-packagekit-debuginforedhat-upgrade-gnome-packagekit-installerredhat-upgrade-gnome-packagekit-updaterredhat-upgrade-gnome-screenshotredhat-upgrade-gnome-screenshot-debuginforedhat-upgrade-gnome-sessionredhat-upgrade-gnome-session-custom-sessionredhat-upgrade-gnome-session-debuginforedhat-upgrade-gnome-session-wayland-sessionredhat-upgrade-gnome-session-xsessionredhat-upgrade-gnome-settings-daemonredhat-upgrade-gnome-settings-daemon-debuginforedhat-upgrade-gnome-settings-daemon-develredhat-upgrade-gnome-shellredhat-upgrade-gnome-shell-debuginforedhat-upgrade-gnome-shell-extension-alternate-tabredhat-upgrade-gnome-shell-extension-apps-menuredhat-upgrade-gnome-shell-extension-auto-move-windowsredhat-upgrade-gnome-shell-extension-commonredhat-upgrade-gnome-shell-extension-dash-to-dockredhat-upgrade-gnome-shell-extension-drive-menuredhat-upgrade-gnome-shell-extension-launch-new-instanceredhat-upgrade-gnome-shell-extension-native-window-placementredhat-upgrade-gnome-shell-extension-no-hot-cornerredhat-upgrade-gnome-shell-extension-panel-favoritesredhat-upgrade-gnome-shell-extension-places-menuredhat-upgrade-gnome-shell-extension-screenshot-window-sizerredhat-upgrade-gnome-shell-extension-systemmonitorredhat-upgrade-gnome-shell-extension-top-iconsredhat-upgrade-gnome-shell-extension-updates-dialogredhat-upgrade-gnome-shell-extension-user-themeredhat-upgrade-gnome-shell-extension-window-listredhat-upgrade-gnome-shell-extension-windowsnavigatorredhat-upgrade-gnome-shell-extension-workspace-indicatorredhat-upgrade-gnome-softwareredhat-upgrade-gnome-software-debuginforedhat-upgrade-gnome-software-develredhat-upgrade-gnome-software-editorredhat-upgrade-gnome-system-monitorredhat-upgrade-gnome-system-monitor-debuginforedhat-upgrade-gnome-terminalredhat-upgrade-gnome-terminal-debuginforedhat-upgrade-gnome-terminal-nautilusredhat-upgrade-gnome-themes-standardredhat-upgrade-gnome-themes-standard-debuginforedhat-upgrade-gnome-tweak-toolredhat-upgrade-gnome-user-docsredhat-upgrade-gnoteredhat-upgrade-gnote-debuginforedhat-upgrade-gobject-introspectionredhat-upgrade-gobject-introspection-debuginforedhat-upgrade-gobject-introspection-develredhat-upgrade-gomredhat-upgrade-gom-debuginforedhat-upgrade-gom-develredhat-upgrade-google-noto-emoji-color-fontsredhat-upgrade-google-noto-emoji-fontsredhat-upgrade-griloredhat-upgrade-grilo-debuginforedhat-upgrade-grilo-develredhat-upgrade-grilo-pluginsredhat-upgrade-grilo-plugins-debuginforedhat-upgrade-gsettings-desktop-schemasredhat-upgrade-gsettings-desktop-schemas-develredhat-upgrade-gspellredhat-upgrade-gspell-debuginforedhat-upgrade-gspell-develredhat-upgrade-gspell-docredhat-upgrade-gssdpredhat-upgrade-gssdp-debuginforedhat-upgrade-gssdp-develredhat-upgrade-gssdp-docsredhat-upgrade-gssdp-utilsredhat-upgrade-gstreamer1-plugins-baseredhat-upgrade-gstreamer1-plugins-base-debuginforedhat-upgrade-gstreamer1-plugins-base-develredhat-upgrade-gstreamer1-plugins-base-devel-docsredhat-upgrade-gstreamer1-plugins-base-toolsredhat-upgrade-gtk-docredhat-upgrade-gtk-update-icon-cacheredhat-upgrade-gtk3redhat-upgrade-gtk3-debuginforedhat-upgrade-gtk3-develredhat-upgrade-gtk3-devel-docsredhat-upgrade-gtk3-immodule-ximredhat-upgrade-gtk3-immodulesredhat-upgrade-gtk3-testsredhat-upgrade-gtksourceview3redhat-upgrade-gtksourceview3-debuginforedhat-upgrade-gtksourceview3-develredhat-upgrade-gtksourceview3-testsredhat-upgrade-gucharmapredhat-upgrade-gucharmap-debuginforedhat-upgrade-gucharmap-develredhat-upgrade-gucharmap-libsredhat-upgrade-gupnpredhat-upgrade-gupnp-debuginforedhat-upgrade-gupnp-develredhat-upgrade-gupnp-docsredhat-upgrade-gupnp-igdredhat-upgrade-gupnp-igd-debuginforedhat-upgrade-gupnp-igd-develredhat-upgrade-gupnp-igd-pythonredhat-upgrade-gvfsredhat-upgrade-gvfs-afcredhat-upgrade-gvfs-afpredhat-upgrade-gvfs-archiveredhat-upgrade-gvfs-clientredhat-upgrade-gvfs-debuginforedhat-upgrade-gvfs-develredhat-upgrade-gvfs-fuseredhat-upgrade-gvfs-goaredhat-upgrade-gvfs-gphoto2redhat-upgrade-gvfs-mtpredhat-upgrade-gvfs-smbredhat-upgrade-gvfs-testsredhat-upgrade-harfbuzzredhat-upgrade-harfbuzz-debuginforedhat-upgrade-harfbuzz-develredhat-upgrade-harfbuzz-icuredhat-upgrade-json-glibredhat-upgrade-json-glib-debuginforedhat-upgrade-json-glib-develredhat-upgrade-json-glib-testsredhat-upgrade-libappstream-glibredhat-upgrade-libappstream-glib-builderredhat-upgrade-libappstream-glib-builder-develredhat-upgrade-libappstream-glib-debuginforedhat-upgrade-libappstream-glib-develredhat-upgrade-libchamplainredhat-upgrade-libchamplain-debuginforedhat-upgrade-libchamplain-demosredhat-upgrade-libchamplain-develredhat-upgrade-libchamplain-gtkredhat-upgrade-libcrocoredhat-upgrade-libcroco-debuginforedhat-upgrade-libcroco-develredhat-upgrade-libgdataredhat-upgrade-libgdata-debuginforedhat-upgrade-libgdata-develredhat-upgrade-libgeeredhat-upgrade-libgee-debuginforedhat-upgrade-libgee-develredhat-upgrade-libgepubredhat-upgrade-libgepub-debuginforedhat-upgrade-libgepub-develredhat-upgrade-libgexiv2redhat-upgrade-libgexiv2-debuginforedhat-upgrade-libgexiv2-develredhat-upgrade-libgnomekbdredhat-upgrade-libgnomekbd-debuginforedhat-upgrade-libgnomekbd-develredhat-upgrade-libgovirtredhat-upgrade-libgovirt-debuginforedhat-upgrade-libgovirt-develredhat-upgrade-libgtop2redhat-upgrade-libgtop2-debuginforedhat-upgrade-libgtop2-develredhat-upgrade-libgweatherredhat-upgrade-libgweather-debuginforedhat-upgrade-libgweather-develredhat-upgrade-libgxpsredhat-upgrade-libgxps-debuginforedhat-upgrade-libgxps-develredhat-upgrade-libgxps-toolsredhat-upgrade-libicalredhat-upgrade-libical-debuginforedhat-upgrade-libical-develredhat-upgrade-libical-glibredhat-upgrade-libical-glib-develredhat-upgrade-libical-glib-docredhat-upgrade-libjpeg-turboredhat-upgrade-libjpeg-turbo-debuginforedhat-upgrade-libjpeg-turbo-develredhat-upgrade-libjpeg-turbo-staticredhat-upgrade-libjpeg-turbo-utilsredhat-upgrade-libmediaartredhat-upgrade-libmediaart-debuginforedhat-upgrade-libmediaart-develredhat-upgrade-libmediaart-testsredhat-upgrade-libosinforedhat-upgrade-libosinfo-debuginforedhat-upgrade-libosinfo-develredhat-upgrade-libosinfo-valaredhat-upgrade-libpeasredhat-upgrade-libpeas-debuginforedhat-upgrade-libpeas-develredhat-upgrade-libpeas-gtkredhat-upgrade-libpeas-loader-pythonredhat-upgrade-librsvg2redhat-upgrade-librsvg2-debuginforedhat-upgrade-librsvg2-develredhat-upgrade-librsvg2-toolsredhat-upgrade-libsecretredhat-upgrade-libsecret-debuginforedhat-upgrade-libsecret-develredhat-upgrade-libsoupredhat-upgrade-libsoup-debuginforedhat-upgrade-libsoup-develredhat-upgrade-libwayland-clientredhat-upgrade-libwayland-cursorredhat-upgrade-libwayland-eglredhat-upgrade-libwayland-serverredhat-upgrade-libwnck3redhat-upgrade-libwnck3-debuginforedhat-upgrade-libwnck3-develredhat-upgrade-mozjs52redhat-upgrade-mozjs52-debuginforedhat-upgrade-mozjs52-develredhat-upgrade-mutterredhat-upgrade-mutter-debuginforedhat-upgrade-mutter-develredhat-upgrade-nautilusredhat-upgrade-nautilus-debuginforedhat-upgrade-nautilus-develredhat-upgrade-nautilus-extensionsredhat-upgrade-nautilus-sendtoredhat-upgrade-nautilus-sendto-debuginforedhat-upgrade-openchangeredhat-upgrade-openchange-clientredhat-upgrade-openchange-debuginforedhat-upgrade-openchange-develredhat-upgrade-openchange-devel-docsredhat-upgrade-osinfo-dbredhat-upgrade-packagekitredhat-upgrade-packagekit-command-not-foundredhat-upgrade-packagekit-cronredhat-upgrade-packagekit-debuginforedhat-upgrade-packagekit-glibredhat-upgrade-packagekit-glib-develredhat-upgrade-packagekit-gstreamer-pluginredhat-upgrade-packagekit-gtk3-moduleredhat-upgrade-packagekit-yumredhat-upgrade-packagekit-yum-pluginredhat-upgrade-pangoredhat-upgrade-pango-debuginforedhat-upgrade-pango-develredhat-upgrade-pango-testsredhat-upgrade-popplerredhat-upgrade-poppler-cppredhat-upgrade-poppler-cpp-develredhat-upgrade-poppler-debuginforedhat-upgrade-poppler-demosredhat-upgrade-poppler-develredhat-upgrade-poppler-glibredhat-upgrade-poppler-glib-develredhat-upgrade-poppler-qtredhat-upgrade-poppler-qt-develredhat-upgrade-poppler-utilsredhat-upgrade-python2-gexiv2redhat-upgrade-python2-pyatspiredhat-upgrade-redhat-logosredhat-upgrade-restredhat-upgrade-rest-debuginforedhat-upgrade-rest-develredhat-upgrade-rhythmboxredhat-upgrade-rhythmbox-debuginforedhat-upgrade-rhythmbox-develredhat-upgrade-seahorse-nautilusredhat-upgrade-seahorse-nautilus-debuginforedhat-upgrade-shotwellredhat-upgrade-shotwell-debuginforedhat-upgrade-sushiredhat-upgrade-sushi-debuginforedhat-upgrade-totemredhat-upgrade-totem-debuginforedhat-upgrade-totem-develredhat-upgrade-totem-nautilusredhat-upgrade-totem-pl-parserredhat-upgrade-totem-pl-parser-debuginforedhat-upgrade-totem-pl-parser-develredhat-upgrade-turbojpegredhat-upgrade-turbojpeg-develredhat-upgrade-upowerredhat-upgrade-upower-debuginforedhat-upgrade-upower-develredhat-upgrade-upower-devel-docsredhat-upgrade-valaredhat-upgrade-vala-debuginforedhat-upgrade-vala-develredhat-upgrade-vala-docredhat-upgrade-valadocredhat-upgrade-valadoc-develredhat-upgrade-vinoredhat-upgrade-vino-debuginforedhat-upgrade-vte-profileredhat-upgrade-vte291redhat-upgrade-vte291-debuginforedhat-upgrade-vte291-develredhat-upgrade-wayland-debuginforedhat-upgrade-wayland-develredhat-upgrade-wayland-docredhat-upgrade-wayland-protocols-develredhat-upgrade-webkitgtk4redhat-upgrade-webkitgtk4-debuginforedhat-upgrade-webkitgtk4-develredhat-upgrade-webkitgtk4-docredhat-upgrade-webkitgtk4-jscredhat-upgrade-webkitgtk4-jsc-develredhat-upgrade-webkitgtk4-plugin-process-gtk2redhat-upgrade-xdg-desktop-portalredhat-upgrade-xdg-desktop-portal-debuginforedhat-upgrade-xdg-desktop-portal-develredhat-upgrade-xdg-desktop-portal-gtkredhat-upgrade-xdg-desktop-portal-gtk-debuginforedhat-upgrade-yelpredhat-upgrade-yelp-debuginforedhat-upgrade-yelp-develredhat-upgrade-yelp-libsredhat-upgrade-yelp-toolsredhat-upgrade-yelp-xslredhat-upgrade-yelp-xsl-develredhat-upgrade-zenityredhat-upgrade-zenity-debuginfo
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.