PT-2021-24248 · Webkitgtk+7 · Webkitgtk+7

Chijin Zhou

·

Published

2021-09-18

·

Updated

2022-05-10

·

CVE-2021-45482

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: WebKitGTK versions prior to 2.32.4
Description: The issue is related to a use-after-free in WebCore::ContainerNode::firstChild. This is a different vulnerability than the one previously identified.
Recommendations: For versions prior to 2.32.4, update to version 2.32.4 or later to resolve the issue.

Exploit

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2022:1777
ALT-PU-2021-2835
ALT-PU-2021-2878
CESA-2022_1777
CVE-2021-45482
DSA-4975-1
DSA-4976-1
OPENSUSE-SU-2022:0705-1
OPENSUSE-SU-2022_0705-1
RHSA-2022:1777
RHSA-2022_1777
RHSA-2025:10364
RLSA-2022:1777
SUSE-SU-2022:0690-1
SUSE-SU-2022:0703-1
SUSE-SU-2022:0705-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Red Hat
Rocky Linux
Suse
Webkitgtk