Command injection in WebKitGTK+ - CVE-2017-7161
Published: March 22, 2018 / Updated: March 22, 2018
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to command injection. A remote attacker can submit specially crafted web content, inject arbitrary commands and execute arbitrary code.
Successful exploitation of the vulnerability may result in system compromise.
Affected software
Gentoo Linux
Ubuntu
Fedora
Opensuse
webkitgtk4