Wind River Support Network

HomeDefectsLIN1018-7901
Not to be fixed

LIN1018-7901 : Security Advisory - webkitgtk - CVE-2021-21775

Created: Jul 7, 2021    Updated: Feb 27, 2023
Resolved Date: Feb 27, 2023
Found In Version: 10.18.44.1
Severity: Standard
Applicable for: Wind River Linux LTS 18
Component/s: Userspace

Description

A use-after-free vulnerability exists in the way certain events are processed for ImageLoader objects of Webkit WebKitGTK 2.30.4. A specially crafted web page can lead to a potential information leak and further memory corruption. In order to trigger the vulnerability, a victim must be tricked into visiting a malicious webpage.

CREATE(Triage):(User=admin) CVE-2021-21775 (https://nvd.nist.gov/vuln/detail/CVE-2021-21775)
Live chat
Online