webkit2gtk3-devel vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the webkit2gtk3-devel package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Origin Validation Error

*
  • M
Cross-site Scripting (XSS)

*
  • M
CVE-2024-40866

*
  • H
Out-of-Bounds

*
  • M
Information Exposure

*
  • H
Out-of-Bounds

*
  • H
Out-of-Bounds

*
  • H
Out-of-Bounds

*
  • M
Overly Permissive Cross-domain Whitelist

*
  • M
Use After Free

*
  • M
Out-of-bounds Read

*
  • M
Out-of-bounds Read

*
  • M
Use After Free

*
  • M
Out-of-bounds Read

*
  • H
Improper Authorization

*
  • M
Authentication Bypass

*
  • M
CVE-2023-42956

*
  • H
Use After Free

*
  • H
Out-of-Bounds

<0:2.42.5-1.el9
  • H
Out-of-Bounds

<0:2.42.5-1.el9
  • H
CVE-2023-32359

<0:2.42.5-1.el9
  • H
Improper Input Validation

<0:2.40.5-1.el9
  • H
Improper Input Validation

<0:2.40.5-1.el9
  • H
Improper Restriction of Rendered UI Layers or Frames

<0:2.40.5-1.el9
  • H
Improper Enforcement of Behavioral Workflow

<0:2.40.5-1.el9
  • M
CVE-2024-23263

*
  • M
CVE-2024-23252

*
  • H
CVE-2024-23226

*
  • M
CVE-2024-23284

*
  • M
Arbitrary Code Injection

*
  • M
CVE-2024-23254

*
  • H
CVE-2024-23213

<0:2.42.5-1.el9
  • H
CVE-2023-42833

<0:2.40.5-1.el9
  • H
Use After Free

<0:2.42.5-1.el9
  • H
Resource Exhaustion

<0:2.42.5-1.el9
  • H
CVE-2024-23206

<0:2.42.5-1.el9
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<0:2.38.5-1.el9_2.3
  • H
Out-of-Bounds

<0:2.42.5-1.el9
  • H
Out-of-Bounds

<0:2.42.5-1.el9
  • H
Out-of-bounds Write

<0:2.40.5-1.el9_3.1
  • H
CVE-2023-40451

<0:2.40.5-1.el9
  • H
Use After Free

<0:2.40.5-1.el9
  • H
Use After Free

<0:2.42.5-1.el9
  • H
Improper Check for Unusual or Exceptional Conditions

<0:2.38.5-1.el9_2.3
  • H
Static Code Injection

<0:2.40.5-1.el9
  • H
CVE-2023-32370

<0:2.40.5-1.el9
  • H
Use After Free

<0:2.40.5-1.el9
  • M
CVE-2022-32816

<0:2.36.7-1.el9
  • M
Out-of-bounds Write

<0:2.36.7-1.el9
  • H
Overly Permissive Cross-domain Whitelist

<0:2.40.5-1.el9
  • H
Information Exposure

<0:2.40.5-1.el9
  • H
Improper Input Validation

<0:2.40.5-1.el9
  • H
Information Exposure

<0:2.40.5-1.el9
  • H
Out-of-Bounds

<0:2.40.5-1.el9
  • H
Out-of-Bounds

<0:2.40.5-1.el9
  • H
Out-of-Bounds

<0:2.40.5-1.el9
  • H
Overly Permissive Cross-domain Whitelist

<0:2.40.5-1.el9
  • H
Out-of-Bounds

<0:2.40.5-1.el9
  • H
Out-of-Bounds

<0:2.40.5-1.el9
  • H
Out-of-Bounds

<0:2.40.5-1.el9
  • H
Information Exposure

<0:2.40.5-1.el9
  • H
Out-of-Bounds

<0:2.40.5-1.el9
  • H
Arbitrary Code Injection

<0:2.38.5-1.el9_2.3
  • H
Arbitrary Code Injection

<0:2.38.5-1.el9_2.3
  • H
Arbitrary Code Injection

<0:2.38.5-1.el9_2.3
  • H
Arbitrary Code Injection

<0:2.38.5-1.el9
  • H
Use After Free

<0:2.38.5-1.el9_2.2
  • H
Improper Input Validation

<0:2.38.5-1.el9_2.2
  • H
Use After Free

<0:2.38.5-1.el9_2.1
  • H
Use After Free

<0:2.36.7-1.el9_1.3
  • H
Arbitrary Code Injection

<0:2.38.5-1.el9
  • H
Arbitrary Code Injection

<0:2.38.5-1.el9
  • H
Arbitrary Code Injection

<0:2.38.5-1.el9
  • H
Arbitrary Code Injection

<0:2.38.5-1.el9
  • H
Arbitrary Code Injection

<0:2.38.5-1.el9
  • H
Out-of-Bounds

<0:2.36.7-1.el9_1.2
  • H
Out-of-Bounds

<0:2.38.5-1.el9
  • H
Out-of-Bounds

<0:2.38.5-1.el9
  • H
Use After Free

<0:2.38.5-1.el9
  • H
Information Exposure

<0:2.38.5-1.el9
  • H
Out-of-bounds Write

<0:2.38.5-1.el9
  • H
CVE-2022-46692

<0:2.38.5-1.el9
  • H
Out-of-bounds Write

<0:2.38.5-1.el9
  • H
Out-of-bounds Write

<0:2.38.5-1.el9
  • H
Out-of-bounds Write

<0:2.38.5-1.el9
  • H
CVE-2022-42852

<0:2.38.5-1.el9
  • H
Use After Free

<0:2.38.5-1.el9
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<0:2.36.7-1.el9_1.1
  • H
CVE-2022-42824

<0:2.38.5-1.el9
  • H
Improper Restriction of Rendered UI Layers or Frames

<0:2.38.5-1.el9
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<0:2.38.5-1.el9
  • H
Out-of-Bounds

<0:2.38.5-1.el9
  • H
Out-of-bounds Write

<0:2.38.5-1.el9
  • M
Buffer Overflow

<0:2.36.7-1.el9
  • H
Out-of-Bounds

<0:2.38.5-1.el9
  • M
Improper Input Validation

<0:2.36.7-1.el9_0
  • M
Use After Free

<0:2.36.7-1.el9
  • M
Information Exposure

<0:2.36.7-1.el9
  • M
Use After Free

<0:2.36.7-1.el9
  • M
Use After Free

<0:2.36.7-1.el9
  • M
Improper Use of Validation Framework

<0:2.36.7-1.el9
  • M
Improper Use of Validation Framework

<0:2.36.7-1.el9
  • M
Improper Use of Validation Framework

<0:2.36.7-1.el9
  • M
Out-of-bounds Write

<0:2.36.7-1.el9
  • M
Use After Free

<0:2.36.7-1.el9
  • M
Use After Free

<0:2.36.7-1.el9
  • M
Buffer Overflow

<0:2.36.7-1.el9