Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.10.2019.0281
Kategorie:Mageia Linux Local Security Checks
Titel:Mageia: Security Advisory (MGASA-2019-0281)
Zusammenfassung:The remote host is missing an update for the 'webkit2' package(s) announced via the MGASA-2019-0281 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'webkit2' package(s) announced via the MGASA-2019-0281 advisory.

Vulnerability Insight:
Updated webkit2 packages fix security vulnerabilities:

Processing maliciously crafted web content may lead to arbitrary code
execution. Multiple memory corruption issues were addressed with
improved memory handling (CVE-2019-8644).

Processing maliciously crafted web content may lead to universal cross
site scripting. A logic issue existed in the handling of synchronous
page loads. This issue was addressed with improved state management
(CVE-2019-8649).

Processing maliciously crafted web content may lead to universal cross
site scripting. A logic issue was addressed with improved state management
(CVE-2019-8658).

Processing maliciously crafted web content may lead to arbitrary code
execution. Multiple memory corruption issues were addressed with improved
memory handling (CVE-2019-8666, CVE-2019-8669, CVE-2019-8671, CVE-2019-8672,
CVE-2019-8673, CVE-2019-8676, CVE-2019-8677, CVE-2019-8678, CVE-2019-8679,
CVE-2019-8680, CVE-2019-8681, CVE-2019-8683, CVE-2019-8684, CVE-2019-8686,
CVE-2019-8687, CVE-2019-8688, CVE-2019-8689).

Processing maliciously crafted web content may lead to universal cross
site scripting. A logic issue existed in the handling of document loads.
This issue was addressed with improved state management (CVE-2019-8690).

For other fixes in this update, see the referenced release links.

Affected Software/OS:
'webkit2' package(s) on Mageia 7.

Solution:
Please install the updated package(s).

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2019-8644
https://support.apple.com/HT210346
https://support.apple.com/HT210348
https://support.apple.com/HT210351
https://support.apple.com/HT210355
https://support.apple.com/HT210356
https://support.apple.com/HT210357
https://support.apple.com/HT210358
Common Vulnerability Exposure (CVE) ID: CVE-2019-8649
Common Vulnerability Exposure (CVE) ID: CVE-2019-8658
https://support.apple.com/HT210353
Common Vulnerability Exposure (CVE) ID: CVE-2019-8666
Common Vulnerability Exposure (CVE) ID: CVE-2019-8669
Common Vulnerability Exposure (CVE) ID: CVE-2019-8671
Common Vulnerability Exposure (CVE) ID: CVE-2019-8672
Common Vulnerability Exposure (CVE) ID: CVE-2019-8673
Common Vulnerability Exposure (CVE) ID: CVE-2019-8676
Common Vulnerability Exposure (CVE) ID: CVE-2019-8677
Common Vulnerability Exposure (CVE) ID: CVE-2019-8678
Common Vulnerability Exposure (CVE) ID: CVE-2019-8679
Common Vulnerability Exposure (CVE) ID: CVE-2019-8680
Common Vulnerability Exposure (CVE) ID: CVE-2019-8681
Common Vulnerability Exposure (CVE) ID: CVE-2019-8683
Common Vulnerability Exposure (CVE) ID: CVE-2019-8684
Common Vulnerability Exposure (CVE) ID: CVE-2019-8686
Common Vulnerability Exposure (CVE) ID: CVE-2019-8687
Common Vulnerability Exposure (CVE) ID: CVE-2019-8688
Common Vulnerability Exposure (CVE) ID: CVE-2019-8689
Common Vulnerability Exposure (CVE) ID: CVE-2019-8690
CopyrightCopyright (C) 2022 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.