Bug 260649 (CVE-2023-39928)
| Summary: | A use-after-free vulnerability exists in the MediaRecorder API of Webkit WebKitGTK 2.40.5. A specially crafted web page can abuse this vulnerability to cause memory corruption and potentially arbitrary code execution. | ||||||||
|---|---|---|---|---|---|---|---|---|---|
| Product: | Security | Reporter: | vulndiscovery | ||||||
| Component: | Security | Assignee: | WebKit Security Group <webkit-security-unassigned> | ||||||
| Status: | RESOLVED FIXED | ||||||||
| Severity: | Normal | CC: | bfulgham, clopez, ddkilzer, eric.carlson, mcatanzaro, philn, webkit-bug-importer, yellowhairryan844 | ||||||
| Priority: | P2 | Keywords: | InRadar | ||||||
| Version: | WebKit Nightly Build | ||||||||
| Hardware: | Unspecified | ||||||||
| OS: | Unspecified | ||||||||
| Attachments: |
|
||||||||
2023-08-24 01:51 PDT, vulndiscovery
2023-08-24 01:52 PDT, vulndiscovery