CVE-2018-12911 PUBLISHED

WebKitGTK+ 2.20.3 has an off-by-one error, with a resultant out-of-bounds write, in the get_simple_globs functions in ThirdParty/xdgmime/src/xdgmimecache.c and ThirdParty/xdgmime/src/xdgmimeglob.c.

EPSS 0.49% · 65.6th percentile

Risk Scores

EPSS Score
0.49%
65.6th percentile

Affected Products

VendorProductVersions
Ubuntu:24.04:LTSqtwebkit-opensource-src0, 5.212.0~alpha4-36, 5.212.0~alpha4-34ubuntu4
Ubuntu:18.04:LTSqtwebkit-source0, 2.3.2-0ubuntu13
Ubuntu:18.04:LTSqtwebkit-opensource-src0, 5.212.0~alpha2-7ubuntu1, 5.212.0~alpha2-7build2
Ubuntu:22.04:LTSqtwebkit-opensource-src5.212.0~alpha4-14build1, 5.212.0~alpha4-14, 5.212.0~alpha4-13
Ubuntu:16.04:LTSqtwebkit-source2.3.2-0ubuntu10, 2.3.2-0ubuntu11, 0
Ubuntu:16.04:LTSwebkitgtk2.4.9-2ubuntu2, 0, 2.4.10-0ubuntu1
Ubuntu:18.04:LTSwebkitgtk0, 2.4.11-3, 2.4.11-3ubuntu2
Ubuntu:18.04:LTSwebkit2gtk2.18.2-1, 2.18.3-1, 2.18.4-1
Ubuntu:16.04:LTSwebkit2gtk2.20.1-0ubuntu0.16.04.1, 2.10.4+dfsg1-1, 0
Ubuntu:20.04:LTSqtwebkit-opensource-src5.212.0~alpha4-1ubuntu2.1, 0, 5.212.0~alpha3-3
Ubuntu:16.04:LTSqtwebkit-opensource-src0, 5.4.2+dfsg-1ubuntu2.1, 5.5.1+dfsg-2ubuntu1

Timeline

References

Open in Interactive Console →