webkit2gtk vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the webkit2gtk package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Cross-site Scripting (XSS)

*
  • H
CVE-2024-44308

*
  • M
Out-of-bounds Write

<2.46.3-0ubuntu0.24.04.1
  • M
CVE-2024-44296

<2.46.3-0ubuntu0.24.04.1
  • M
CVE-2024-44185

<2.46.1-0ubuntu0.24.04.1
  • M
Out-of-Bounds

<2.44.3-0ubuntu0.24.04.1
  • M
CVE-2024-40866

<2.46.1-0ubuntu0.24.04.1
  • M
CVE-2024-27808

<2.44.2-0ubuntu0.24.04.1
  • M
Origin Validation Error

<2.46.1-0ubuntu0.24.04.1
  • M
CVE-2024-27820

<2.44.2-0ubuntu0.24.04.1
  • M
Integer Overflow or Wraparound

<2.44.2-0ubuntu0.24.04.1
  • M
CVE-2024-27838

<2.44.3-0ubuntu0.24.04.1
  • M
Use After Free

<2.44.3-0ubuntu0.24.04.1
  • M
Out-of-bounds Read

<2.44.3-0ubuntu0.24.04.1
  • M
CVE-2024-40789

<2.44.3-0ubuntu0.24.04.1
  • M
CVE-2024-4558

<2.44.3-0ubuntu0.24.04.1
  • M
CVE-2024-40782

<2.44.3-0ubuntu0.24.04.1
  • M
Out-of-bounds Read

<2.44.3-0ubuntu0.24.04.1
  • M
CVE-2024-27834

<2.44.2-0ubuntu0.24.04.1
  • M
Out-of-Bounds

<2.18.3-1
  • M
Out-of-Bounds

<2.18.4-1
  • M
Out-of-Bounds

<2.22.2-1ubuntu1
  • M
Improper Validation of Array Index

<2.22.2-1ubuntu1
  • M
Use After Free

<2.22.2-1ubuntu1
  • M
CVE-2018-4212

<2.22.2-1ubuntu1
  • M
Improper Input Validation

<2.22.2-1ubuntu1
  • M
Improper Input Validation

<2.22.2-1ubuntu1
  • M
Improper Input Validation

<2.22.2-1ubuntu1
  • M
Improper Input Validation

<2.22.2-1ubuntu1
  • M
Use After Free

<2.22.2-1ubuntu1
  • M
Use After Free

<2.22.2-1ubuntu1
  • M
Use After Free

<2.22.2-1ubuntu1
  • M
Use After Free

<2.22.2-1ubuntu1
  • M
Cross-site Scripting (XSS)

<2.22.2-1ubuntu1
  • M
Information Exposure

<2.22.2-1ubuntu1
  • M
Out-of-Bounds

<2.22.2-1ubuntu1
  • M
Use After Free

<2.22.2-1ubuntu1
  • M
Out-of-Bounds

<2.22.2-1ubuntu1
  • M
Use After Free

<2.22.2-1ubuntu1
  • M
Origin Validation Error

<2.22.2-1ubuntu1
  • M
Out-of-Bounds

<2.22.2-1ubuntu1
  • M
CVE-2018-4361

<2.22.2-1ubuntu1
  • M
Out-of-Bounds

<2.22.2-1ubuntu1
  • M
Out-of-Bounds

<2.22.2-1ubuntu1
  • M
Out-of-Bounds

<2.22.2-1ubuntu1
  • M
Out-of-bounds Write

<2.22.5-1
  • M
Out-of-bounds Write

<2.22.4-1
  • M
Out-of-bounds Write

<2.22.4-1
  • M
Cross-site Scripting (XSS)

<2.22.5-1
  • M
Out-of-bounds Write

<2.22.5-1
  • M
Out-of-bounds Write

<2.22.5-1
  • M
Out-of-bounds Write

<2.22.0-1
  • M
Improper Input Validation

<2.28.0-1ubuntu2
  • M
Use After Free

<2.28.1-1
  • M
Use After Free

<2.30.5
  • M
Use After Free

<2.30.3-1
  • M
Use After Free

<2.30.3-1
  • M
Use After Free

<2.32.0-1ubuntu3
  • M
CVE-2020-29623

<2.32.0-1ubuntu3
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<2.28.0-1ubuntu2
  • M
Resource Exhaustion

<2.28.2-2
  • M
Out-of-Bounds

<2.26.4-1ubuntu1
  • M
Race Condition

<2.28.0-1ubuntu2
  • M
Out-of-Bounds

<2.26.4-1ubuntu1
  • M
Origin Validation Error

<2.26.4-1ubuntu1
  • M
Cross-site Scripting (XSS)

<2.26.4-1ubuntu1
  • M
Out-of-Bounds

<2.28.0-1ubuntu2
  • M
Out-of-Bounds

<2.26.4-1ubuntu1
  • M
Always-Incorrect Control Flow Implementation

<2.28.0-1ubuntu2
  • M
Cross-site Scripting (XSS)

<2.28.0-1ubuntu2
  • M
Out-of-Bounds

<2.28.0-1ubuntu2
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<2.28.0-1ubuntu2
  • M
Use After Free

<2.30.3-1
  • M
Out-of-bounds Read

<2.28.4-1
  • M
CVE-2020-9915

<2.28.4-1
  • M
Cross-site Scripting (XSS)

<2.28.4-1
  • M
Arbitrary Command Injection

<2.28.4-1
  • M
Use After Free

<2.28.4-1
  • M
Use After Free

<2.28.4-1
  • M
Out-of-bounds Write

<2.30.3-1
  • M
CVE-2021-1765

<2.32.0-1ubuntu3
  • M
Use After Free

<2.32.0-1ubuntu3
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<2.32.0-1ubuntu3
  • M
CVE-2021-1871

<2.32.0-1ubuntu3
  • M
Out-of-Bounds

<2.32.0-1ubuntu3
  • M
Out-of-bounds Write

<2.30.3-1
  • M
Exposure of Resource to Wrong Sphere

<2.30.3-1
  • M
CVE-2021-1799

<2.32.0-1ubuntu3
  • M
Cross-site Scripting (XSS)

<2.30.3-1
  • M
CVE-2021-1801

<2.32.0-1ubuntu3
  • M
CVE-2021-1870

<2.32.0-1ubuntu3
  • M
Cross-site Scripting (XSS)

<2.30.3-1
  • M
Use After Free

<2.32.0-1ubuntu3
  • M
Use After Free

<2.32.3-1ubuntu1
  • M
Use After Free

<2.32.3-1ubuntu1
  • M
Out-of-bounds Write

<2.32.3-1ubuntu1
  • M
Integer Overflow or Wraparound

<2.32.3-1ubuntu1
  • M
CVE-2021-30682

<2.32.0-1ubuntu3
  • M
Cross-site Scripting (XSS)

<2.32.3-1ubuntu1
  • M
Out-of-Bounds

<2.32.3-1ubuntu1
  • M
Cross-site Scripting (XSS)

<2.32.3-1ubuntu1
  • M
Improper Authentication

<2.32.3-1ubuntu1
  • M
Use After Free

<2.30.3-1
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<2.34.0-1ubuntu1
  • M
Out-of-bounds Write

<2.32.3-1ubuntu1
  • M
CVE-2021-30823

<2.34.0-1ubuntu1
  • M
Out-of-bounds Write

<2.32.3-1ubuntu1
  • M
Use After Free

<2.32.3-1ubuntu1
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<2.32.3-1ubuntu1
  • M
CVE-2021-30797

<2.32.3-1ubuntu1
  • M
Use After Free

<2.28.0-1ubuntu2
  • M
Out-of-bounds Write

<2.34.0-1ubuntu1
  • M
Open Redirect

<2.34.0-1ubuntu1
  • M
Buffer Overflow

<2.34.0-1ubuntu1
  • M
Out-of-bounds Write

<2.34.0-1ubuntu1
  • M
CVE-2021-30884

<2.34.0-1ubuntu1
  • M
CVE-2021-30887

<2.34.3-1
  • M
Use After Free

<2.35.2-1
  • M
Cross-site Scripting (XSS)

<2.34.3-1
  • M
CVE-2021-30897

<2.34.0-1ubuntu1
  • M
Buffer Overflow

<2.35.2-1
  • M
Race Condition

<2.35.2-1
  • M
Integer Overflow or Wraparound

<2.35.2-1
  • M
Out-of-bounds Read

<2.35.2-1
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<2.35.2-1
  • M
Use After Free

<2.35.2-1
  • M
CVE-2021-42762

<2.34.1-1ubuntu1
  • M
Memory Leak

<2.34.0-1ubuntu1
  • M
Use After Free

<2.34.0-1ubuntu1
  • M
CVE-2022-22589

<2.35.3-1ubuntu1
  • M
Origin Validation Error

<2.35.2-1
  • M
Use After Free

<2.35.3-1ubuntu1
  • M
CVE-2022-22592

<2.35.3-1ubuntu1
  • M
Use After Free

<2.35.90-1ubuntu1
  • M
Out-of-bounds Write

<2.36.6-1
  • M
Out-of-bounds Write

<2.36.3-1
  • M
Use After Free

<2.36.3-1
  • M
Use After Free

<2.36.3-1
  • M
Out-of-bounds Write

<2.36.3-1
  • M
Out-of-bounds Write

<2.36.3-1
  • M
Out-of-bounds Write

<2.36.6-1
  • M
Improper Restriction of Rendered UI Layers or Frames

<2.36.6-1
  • M
CVE-2022-32816

<2.36.6-1
  • M
Improper Restriction of Rendered UI Layers or Frames

<2.38.4-2
  • M
CVE-2022-42824

<2.38.2-1
  • M
Improper Restriction of Rendered UI Layers or Frames

<2.38.2-1
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<2.38.2-1
  • M
Use After Free

<2.38.4-2
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<2.38.3-1
  • M
Use After Free

<2.38.3-1
  • M
CVE-2022-42852

<2.38.3-1
  • M
CVE-2022-46692

<2.38.3-1
  • M
CVE-2022-46698

<2.38.3-1
  • M
CVE-2022-46705

<2.38.4-2
  • M
Out-of-bounds Write

<2.38.3-1
  • M
CVE-2022-46725

<2.38.4-2
  • M
Out-of-bounds Write

<2.38.2-1
  • M
Out-of-bounds Write

<2.38.3-1
  • M
CVE-2023-23517

<2.38.4-2
  • M
CVE-2023-23518

<2.38.4-2
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<2.40.3-1
  • M
CVE-2023-38133

<2.40.5-1
  • M
CVE-2023-38592

<2.40.5-1
  • M
CVE-2023-38572

<2.40.5-1
  • M
CVE-2023-38597

<2.40.5-1
  • M
CVE-2023-38599

<2.40.5-1
  • M
CVE-2023-38600

<2.40.5-1
  • M
CVE-2023-38594

<2.40.5-1
  • M
CVE-2023-38595

<2.40.5-1
  • M
CVE-2023-38611

<2.40.5-1
  • M
Use After Free

<2.40.5-1
  • M
CVE-2023-40397

<2.40.5-1
  • M
CVE-2023-40451

<2.40.5-1
  • M
Out-of-Bounds

<2.42.2-1
  • M
CVE-2023-42852

<2.42.2-1
  • M
Out-of-bounds Write

<2.42.3-1
  • M
Out-of-bounds Read

<2.42.3-1