CVE-2021-30897
24.08.2021, 19:15
An issue existed in the specification for the resource timing API. The specification was updated and the updated specification was implemented. This issue is fixed in macOS Monterey 12.0.1. A malicious website may exfiltrate data cross-origin.Enginsight
| Vendor | Product | Version |
|---|---|---|
| apple | ipados | 𝑥 < 15.0 |
| apple | iphone_os | 𝑥 < 15.0 |
| apple | macos | 𝑥 < 12.0.1 |
| apple | tvos | 𝑥 < 15.0 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| qtwebkit-opensource-src |
| ||||||||||||||||||||||
| qtwebkit-source |
| ||||||||||||||||||||||
| webkit2gtk |
| ||||||||||||||||||||||
| webkitgtk |
| ||||||||||||||||||||||
| wpewebkit |
|