CVE-2018-4133
03.04.2018, 06:29
An issue was discovered in certain Apple products. Safari before 11.1 is affected. The issue involves the "WebKit" component. A Safari cross-site scripting (XSS) vulnerability allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
| Vendor | Product | Version |
|---|---|---|
| apple | safari | 𝑥 < 11.1 |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 17.10 |
| webkitgtk | webkitgtk\+ | 𝑥 < 2.20.4 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| qtwebkit |
| ||||||||||||||||||||||||||||||||
| qtwebkit-opensource-src |
| ||||||||||||||||||||||||||||||||
| qtwebkit-source |
| ||||||||||||||||||||||||||||||||
| webkit2gtk |
| ||||||||||||||||||||||||||||||||
| webkitgtk |
|
References