Known vulnerabilities in webkit2gtk3 (Red Hat package) - page 9
Vendor:
Red Hat Inc.
Software:
webkit2gtk3 (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:webkit2gtk3_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
317
Public exploits:
14
Known exploited (KEV):
20
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
2.52.5-1.el8_8
2.52.5-1.el8_6
2.52.5-1.el8_4
2.52.5-1.el9_6
2.52.5-1.el9_4
2.52.5-1.el8_10
2.52.4-1.el9_2
2.52.4-1.el9_6
2.52.4-1.el9_4
2.52.4-1.el8_6
2.52.4-1.el8_8
2.52.4-1.el8_4
2.52.4-1.el9_8
2.52.4-1.el8_10
2.52.3-1.el9_0
2.52.3-1.el9_2
2.52.3-1.el8_4
2.52.3-1.el9_4
2.52.3-1.el8_6
2.52.3-1.el8_8
2.52.3-1.el9_6
2.52.3-1.el8_10
2.52.3-0.el9_7.1
2.50.3-2.el8_6
2.50.4-1.el9_6
2.50.4-1.el8_8
2.50.4-1.el9_4
2.50.4-1.el9_2
2.50.4-1.el9_0
2.50.4-1.el8_2
2.50.4-1.el8_6
2.50.4-1.el8_4
2.50.3-2.el8_8
2.50.4-1.el9_7
2.50.4-1.el8_10
2.50.3-1.el9_4
2.50.3-1.el9_2
2.50.3-2.el8_4
2.50.3-2.el8_2
2.50.3-1.el9_6
2.50.3-1.el9_7
2.50.3-1.el8_10
2.50.1-1.el8_2
2.50.1-1.el8_4
2.50.1-1.el8_8
2.50.1-1.el8_6
2.50.1-1.el9_0
2.50.1-1.el8_10
2.50.0-1.el8_8.1
2.50.0-1.el8_4
2.50.0-1.el8_2
2.50.0-1.el8_6
2.50.1-0.el9_6
2.50.0-1.el8_10
2.50.0-2.el9_2
2.50.0-2.el9_4
2.50.0-2.el9_0
2.48.5-1.el8_4
2.48.5-1.el8_8
2.48.5-1.el8_6
2.48.5-1.el8_2
2.48.5-1.el9_4
2.48.5-1.el9_0
2.48.5-1.el9_2
2.48.5-1.el8_10
2.48.5-1.el9_6
2.48.2-1.el9_2
2.48.2-1.el8_6
2.48.2-1.el9_4
2.48.2-1.el9_0
2.48.2-1.el8_8
2.48.2-1.el8_2
2.48.2-1.el8_4
2.48.1-2.el8_2
2.48.1-2.el8_6
2.48.1-2.el8_4
2.48.2-1.el8_10
2.48.1-1.el9_6
2.48.1-1.el8_10
2.48.1-3.el9_2
2.48.1-2.el9_4
2.48.1-1.el9_5
2.46.6-2.el8_4
2.46.6-2.el8_2
2.46.6-2.el9_2
2.46.6-2.el9_0
2.46.6-2.el8_8
2.46.6-2.el9_4
2.46.6-2.el9_5
2.46.6-2.el8_10
2.46.6-1.el9_5
2.46.6-1.el8_10
2.46.5-1.el9_2
2.46.5-1.el9_0
2.46.5-1.el8_8
2.46.5-1.el8_4
2.46.5-1.el8_6
2.46.5-1.el8_2
2.46.5-1.el9_4
2.46.5-1.el9_5
2.46.5-1.el8_10
2.46.3-2.el8_4
2.46.3-2.el9_0
2.46.3-2.el8_8
2.46.3-2.el8_6
2.46.3-2.el9_4
2.46.3-2.el9_2
2.46.3-2.el8_10
2.46.3-2.el8_2
2.46.3-2.el9_5
2.46.3-1.el8_2
2.46.3-1.el8_4
2.46.3-1.el8_6
2.46.3-1.el8_8
2.46.3-1.el9_2
2.46.3-1.el9_0
2.46.3-1.el8_10
2.46.3-1.el9_5
2.46.3-1.el9_4
2.44.3-2.el9
2.46.1-1.el9_0
2.46.1-1.el9_2
2.46.1-2.el9_4
2.42.5-1.el8
2.42.5-1.el9
2.40.5-1.el8_9.1
2.40.5-1.el9_3.1
2.40.5-1.el8
2.40.5-1.el9
2.38.5-1.el8_8.5
2.38.5-1.el9_2.3
2.38.5-1.el8_8.4
2.38.5-1.el9_2.2
2.38.5-1.el8
2.38.5-1.el8_8.3
2.38.5-1.el9_2.1
2.38.5-1.el9
2.36.7-1.el9_1.3
2.36.7-1.el8_7.3
2.36.7-1.el8_7.2
2.36.7-1.el9_1.2
2.32.3-2.el8
2.28.4-1.el8
2.36.7-1.el9_1.1
2.36.7-1.el8_7.1
2.36.7-1.el9
2.36.7-1.el8
2.36.7-1.el9_0
2.36.7-1.el8_6
2.34.6-1.el8
2.24.4-4.el8_2
2.24.4-4.el8_1
2.30.4-3.el8_4
2.30.4-1.el8
2.24.4-2.el8_1
2.24.3-1.el8
Vulnerabilities (317)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU81192 - Use After Free CVE-2023-39434 |
CWE-416 | High | 2.40.5-1.el8, 2.40.5-1.el9 | 26.09.2023 |
SB2023092655 SB2023092664 SB2023092707 and 12 more |
||
| #VU81178 - Security Features CVE-2023-40451 |
CWE-254 | High | 2.40.5-1.el8, 2.40.5-1.el9 | 26.09.2023 |
SB2023092655 SB2023092656 SB2023102639 and 13 more |
||
| #VU80603 - Improper Control of Generation of Code ('Code Injection') CVE-2023-40397 |
CWE-94 | High | 2.40.5-1.el8, 2.40.5-1.el9, 2.46.1-1.el9_0, 2.46.1-1.el9_2, 2.46.3-1.el8_2, 2.46.3-1.el8_4, 2.46.3-1.el8_6, 2.46.3-1.el8_8 | 11.09.2023 |
SB2023091135 SB2023072444 SB2023092520 and 15 more |
||
| #VU78775 - Exposure of sensitive information to an unauthorized actor CVE-2023-38599 |
CWE-200 | Low | 2.40.5-1.el8, 2.40.5-1.el9 | 31.07.2023 |
SB2023072444 SB2023072443 SB2023072440 and 20 more |
||
| #VU78604 - Memory corruption CVE-2023-38611 |
CWE-119 | High | 2.40.5-1.el8, 2.40.5-1.el9 | 24.07.2023 |
SB2023072435 SB2023072440 SB2023072441 and 19 more |
||
| #VU78603 - Memory corruption CVE-2023-38600 |
CWE-119 | High | 2.40.5-1.el8, 2.40.5-1.el9 | 24.07.2023 |
SB2023072435 SB2023072440 SB2023072441 and 19 more |
||
| #VU77609 - Memory corruption CVE-2023-32435 |
CWE-119 | Critical | 2.38.5-1.el8_8.5, 2.38.5-1.el9_2.3 | 21.06.2023 |
SB2023062147 SB2023032802 SB2023032760 and 12 more |
||
| #VU77608 - Type confusion CVE-2023-32439 |
CWE-843 | Critical | 2.38.5-1.el8_8.5, 2.38.5-1.el9_2.3 | 21.06.2023 |
SB2023062147 SB2023062148 SB2023062149 and 17 more |
||
| #VU76312 - Use After Free CVE-2023-32373 |
CWE-416 | Critical | 2.38.5-1.el8_8.4, 2.38.5-1.el9_2.2 | 18.05.2023 |
SB2023051859 SB2023051860 SB2023051903 and 19 more |
||
| #VU76310 - Out-of-bounds read CVE-2023-28204 |
CWE-125 | High | 2.38.5-1.el8_8.4, 2.38.5-1.el9_2.2 | 18.05.2023 |
SB2023051859 SB2023051860 SB2023051903 and 21 more |
||
| #VU70518 - Use After Free CVE-2022-42826 |
CWE-416 | High | 2.38.5-1.el8, 2.38.5-1.el9 | 28.12.2022 |
SB2022122809 SB2022102521 SB2022102437 and 18 more |
||
| #VU70242 - Memory corruption CVE-2022-42863 |
CWE-119 | High | 2.38.5-1.el8, 2.38.5-1.el9 | 13.12.2022 |
SB2022121386 SB2022121387 SB2022121390 and 15 more |
||
| #VU70238 - Out-of-bounds read CVE-2022-42852 |
CWE-125 | Medium | 2.38.5-1.el8, 2.38.5-1.el9 | 13.12.2022 |
SB2022121386 SB2022121387 SB2022121390 and 22 more |
||
| #VU70234 - Memory corruption CVE-2022-42867 |
CWE-119 | High | 2.38.5-1.el8, 2.38.5-1.el9 | 13.12.2022 |
SB2022121386 SB2022121387 SB2022121390 and 21 more |
||
| #VU68810 - Exposure of sensitive information to an unauthorized actor CVE-2022-32923 |
CWE-200 | Low | 2.38.5-1.el8, 2.38.5-1.el9 | 27.10.2022 |
SB2022102436 SB2022102746 SB2022102521 and 15 more |
||
| #VU68680 - Out-of-bounds write CVE-2022-32888 |
CWE-787 | High | 2.38.5-1.el8, 2.38.5-1.el9 | 25.10.2022 |
SB2022102521 SB2022102814 SB2022102815 and 16 more |
||
| #VU68627 - Exposure of sensitive information to an unauthorized actor CVE-2022-42824 |
CWE-200 | Medium | 2.38.5-1.el8, 2.38.5-1.el9 | 24.10.2022 |
SB2022102435 SB2022102436 SB2022102437 and 19 more |
||
| #VU68626 - Type confusion CVE-2022-42823 |
CWE-843 | High | 2.38.5-1.el8, 2.38.5-1.el9 | 24.10.2022 |
SB2022102435 SB2022102436 SB2022102437 and 20 more |
||
| #VU68625 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing) CVE-2022-42799 |
CWE-451 | Medium | 2.38.5-1.el8, 2.38.5-1.el9 | 24.10.2022 |
SB2022102435 SB2022102436 SB2022102437 and 19 more |
||
| #VU67199 - Memory corruption CVE-2022-32886 |
CWE-119 | High | 2.38.5-1.el8, 2.38.5-1.el9 | 12.09.2022 |
SB2022091231 SB2022091232 SB2022091233 and 25 more |
Showing elements 161 - 180 out of 317