Skip to content

Commit

Permalink
Update WSA-2024-0004
Browse files Browse the repository at this point in the history
Remove two CVEs which apply only to Apple ports.
  • Loading branch information
aperezdc committed Aug 25, 2024
1 parent 3e5245f commit 29b8a74
Showing 1 changed file with 1 addition and 15 deletions.
16 changes: 1 addition & 15 deletions security/2024-08-17-security-advisory-2024-0004.md
Original file line number Diff line number Diff line change
Expand Up @@ -9,7 +9,7 @@ tags: WSA

* Advisory ID: **WSA-2024-0004**

* CVE identifiers: [CVE-2024-40776](#CVE-2024-40776), [CVE-2024-40779](#CVE-2024-40779), [CVE-2024-40780](#CVE-2024-40780), [CVE-2024-40782](#CVE-2024-40782), [CVE-2024-40785](#CVE-2024-40785), [CVE-2024-40789](#CVE-2024-40789), [CVE-2024-40794](#CVE-2024-40794), [CVE-2024-4558](#CVE-2024-4558)
* CVE identifiers: [CVE-2024-40776](#CVE-2024-40776), [CVE-2024-40779](#CVE-2024-40779), [CVE-2024-40780](#CVE-2024-40780), [CVE-2024-40782](#CVE-2024-40782), [CVE-2024-40789](#CVE-2024-40789), [CVE-2024-4558](#CVE-2024-4558)


Several vulnerabilities were discovered in WebKitGTK and WPE WebKit.
Expand Down Expand Up @@ -44,13 +44,6 @@ Several vulnerabilities were discovered in WebKitGTK and WPE WebKit.
management.
* WebKit Bugzilla: 268770

* <a name='CVE-2024-40785' href='https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-40785'>CVE-2024-40785</a>
* Versions affected: WebKitGTK and WPE WebKit before 2.44.3.
* Credit to Johan Carlsson (joaxcar).
* Impact: Processing maliciously crafted web content may lead to a cross site scripting
attack. Description: This issue was addressed with improved checks.
* WebKit Bugzilla: 273805

* <a name='CVE-2024-40789' href='https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-40789'>CVE-2024-40789</a>
* Versions affected: WebKitGTK and WPE WebKit before 2.44.3.
* Credit to Seunghyun Lee (@0x10n) of KAIST Hacking Lab working with Trend Micro Zero Day
Expand All @@ -60,13 +53,6 @@ Several vulnerabilities were discovered in WebKitGTK and WPE WebKit.
checking.


* <a name='CVE-2024-40794' href='https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-40794'>CVE-2024-40794</a>
* Versions affected: WebKitGTK and WPE WebKit before 2.44.3.
* Credit to Matthew Butler.
* Impact: Private Browsing tabs may be accessed without authentication. Description:
This issue was addressed through improved state management.
* WebKit Bugzilla: 275272

* <a name='CVE-2024-4558' href='https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-4558'>CVE-2024-4558</a>
* Versions affected: WebKitGTK and WPE WebKit before 2.44.3.
* Credit to an anonymous researcher.
Expand Down

0 comments on commit 29b8a74

Please sign in to comment.