Vulnerabilities > Webkitgtk > Webkitgtk > 2.12.2

DATE CVE VULNERABILITY TITLE RISK
2018-04-03 CVE-2018-4122 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
An issue was discovered in certain Apple products.
6.8
2018-04-03 CVE-2018-4120 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
An issue was discovered in certain Apple products.
6.8
2018-04-03 CVE-2018-4119 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
An issue was discovered in certain Apple products.
6.8
2018-04-03 CVE-2018-4118 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
An issue was discovered in certain Apple products.
6.8
2018-04-03 CVE-2018-4117 Information Exposure vulnerability in Apple products
An issue was discovered in certain Apple products.
4.3
2018-04-03 CVE-2018-4114 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
An issue was discovered in certain Apple products.
6.8
2018-04-03 CVE-2018-4113 Reachable Assertion vulnerability in Apple products
An issue was discovered in certain Apple products.
4.3
2018-04-03 CVE-2018-4101 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
An issue was discovered in certain Apple products.
6.8
2017-11-01 CVE-2017-1000122 Improper Input Validation vulnerability in Webkitgtk Webkitgtk+
The UNIX IPC layer in WebKit, including WebKitGTK+ prior to 2.16.3, does not properly validate certain message metadata, allowing a compromised secondary process to cause a denial of service (release assertion) of the UI process.
network
low complexity
webkitgtk CWE-20
5.0
2017-11-01 CVE-2017-1000121 Integer Overflow or Wraparound vulnerability in Webkitgtk Webkitgtk+
The UNIX IPC layer in WebKit, including WebKitGTK+ prior to 2.16.3, does not properly validate message size metadata, allowing a compromised secondary process to trigger an integer overflow and subsequent buffer overflow in the UI process.
network
low complexity
webkitgtk CWE-190
critical
9.8