CVE-2017-1000122
01.11.2017, 21:29
The UNIX IPC layer in WebKit, including WebKitGTK+ prior to 2.16.3, does not properly validate certain message metadata, allowing a compromised secondary process to cause a denial of service (release assertion) of the UI process. This vulnerability does not affect Apple products.Enginsight
| Vendor | Product | Version |
|---|---|---|
| webkitgtk | webkitgtk\+ | 𝑥 < 2.16.3 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| qtwebkit |
| ||||||||||||||||||||||||||||||||||
| qtwebkit-opensource-src |
| ||||||||||||||||||||||||||||||||||
| qtwebkit-source |
| ||||||||||||||||||||||||||||||||||
| webkit2gtk |
| ||||||||||||||||||||||||||||||||||
| webkitgtk |
|
Common Weakness Enumeration