Search CVE reports


Toggle filters

831 – 840 of 1286 results


CVE-2015-5822

Medium priority

Some fixes available 4 of 15

WebKit, as used in JavaScriptCore in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a...

4 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src
qtwebkit-source
webkit
webkitgtk
Show less packages

CVE-2015-5809

Medium priority

Some fixes available 4 of 15

WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a...

4 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src
qtwebkit-source
webkit
webkitgtk
Show less packages

CVE-2015-5801

Medium priority

Some fixes available 4 of 15

WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a...

4 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src
qtwebkit-source
webkit
webkitgtk
Show less packages

CVE-2015-5794

Medium priority

Some fixes available 4 of 15

WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a...

4 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src
qtwebkit-source
webkit
webkitgtk
Show less packages

CVE-2015-5788

Medium priority

Some fixes available 4 of 15

The WebKit Canvas implementation in Apple iOS before 9 allows remote attackers to bypass the Same Origin Policy and obtain sensitive image information via vectors involving a CANVAS element.

4 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src
qtwebkit-source
webkit
webkitgtk
Show less packages

CVE-2015-3755

Medium priority
Ignored

WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, allows remote attackers to spoof the user interface via a malformed URL.

4 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src
qtwebkit-source
webkit
webkitgtk
Show less packages

CVE-2015-3754

Medium priority
Ignored

The private-browsing implementation in WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8 does not prevent caching of HTTP authentication credentials, which makes it easier for remote attackers to track...

4 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src
qtwebkit-source
webkit
webkitgtk
Show less packages

CVE-2015-3753

Medium priority
Ignored

WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, does not properly perform taint checking for CANVAS elements, which allows remote attackers to bypass the...

4 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src
qtwebkit-source
webkit
webkitgtk
Show less packages

CVE-2015-3751

Medium priority
Ignored

WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, allows remote attackers to bypass a Content Security Policy protection mechanism by using a video control...

4 affected packages

webkit, webkitgtk, qtwebkit-opensource-src, qtwebkit-source

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
webkit
webkitgtk
qtwebkit-opensource-src
qtwebkit-source
Show less packages

CVE-2015-3750

Medium priority
Ignored

WebKit in Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, does not enforce the HTTP Strict Transport Security (HSTS) protection mechanism for Content Security...

4 affected packages

qtwebkit-opensource-src, qtwebkit-source, webkit, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qtwebkit-opensource-src
qtwebkit-source
webkit
webkitgtk
Show less packages