Total vulnerabilities in the database
The getImageData function in the ImageBufferCairo class in WebCore/platform/graphics/cairo/ImageBufferCairo.cpp in WebKit, as used in WebKitGTK+ prior to version 2.20.3 and WPE WebKit prior to version 2.20.1, is vulnerable to a heap-based buffer overflow triggered by an integer overflow, which could be abused by crafted HTML content.
Software | From | Fixed in |
---|---|---|
canonical / ubuntu_linux | 16.04 | 16.04.x |
canonical / ubuntu_linux | 17.10 | 17.10.x |
canonical / ubuntu_linux | 18.04 | 18.04.x |
webkitgtk / webkitgtk+ | - | 2.20.3 |
wpewebkit / wpe_webkit | - | 2.20.1 |