CVE-2021-21779
08.07.2021, 12:15
A use-after-free vulnerability exists in the way Webkits GraphicsContext handles certain events in WebKitGTK 2.30.4. A specially crafted web page can lead to a potential information leak and further memory corruption. A victim must be tricked into visiting a malicious web page to trigger this vulnerability.Enginsight
Vendor | Product | Version |
---|---|---|
webkitgtk | webkitgtk | 2.30.4 |
debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
webkit2gtk |
| ||||||||||||||||
wpewebkit |
|

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
qtwebkit-opensource-src |
| ||||||||||||||||||||||||
qtwebkit-source |
| ||||||||||||||||||||||||
webkit2gtk |
| ||||||||||||||||||||||||
webkitgtk |
| ||||||||||||||||||||||||
wpewebkit |
|
Common Weakness Enumeration
References