UBUNTU-CVE-2016-10222

Source
https://ubuntu.com/security/CVE-2016-10222
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-10222.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2016-10222
Upstream
Published
2017-04-03T05:59:00Z
Modified
2026-04-22T10:29:18.571246Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
  • Ubuntu - medium
Summary
[none]
Details

runtime/JSONObject.cpp in JavaScriptCore in WebKit, as distributed in Safari Technology Preview Release 18, allows remote attackers to cause a denial of service (segmentation violation and application crash) via crafted JavaScript code that triggers a "type confusion" in the JSON.stringify function.

References

Affected packages

Ubuntu:16.04:LTS
qtwebkit-opensource-src

Package

Name
qtwebkit-opensource-src
Purl
pkg:deb/ubuntu/qtwebkit-opensource-src@5.5.1+dfsg-2ubuntu1?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*
5.4.2+dfsg-1ubuntu2.1
5.5.1+dfsg-2ubuntu1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "5.5.1+dfsg-2ubuntu1",
            "binary_name": "libqt5webkit5"
        },
        {
            "binary_version": "5.5.1+dfsg-2ubuntu1",
            "binary_name": "libqt5webkit5-qmlwebkitplugin"
        },
        {
            "binary_version": "5.5.1+dfsg-2ubuntu1",
            "binary_name": "qml-module-qtwebkit"
        },
        {
            "binary_version": "5.5.1+dfsg-2ubuntu1",
            "binary_name": "qtwebkit5-doc-html"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-10222.json"
qtwebkit-source

Package

Name
qtwebkit-source
Purl
pkg:deb/ubuntu/qtwebkit-source@2.3.2-0ubuntu11?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.3.2-0ubuntu10
2.3.2-0ubuntu11

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.3.2-0ubuntu11",
            "binary_name": "libqtwebkit-qmlwebkitplugin"
        },
        {
            "binary_version": "2.3.2-0ubuntu11",
            "binary_name": "libqtwebkit4"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-10222.json"
Ubuntu:18.04:LTS
qtwebkit-opensource-src

Package

Name
qtwebkit-opensource-src
Purl
pkg:deb/ubuntu/qtwebkit-opensource-src@5.212.0~alpha2-7ubuntu1?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*
5.9.1+dfsg-5ubuntu1
5.9.1+dfsg-5ubuntu3
5.212.0~alpha2-5build2
5.212.0~alpha2-5build4
5.212.0~alpha2-7
5.212.0~alpha2-7build2
5.212.0~alpha2-7ubuntu1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "5.212.0~alpha2-7ubuntu1",
            "binary_name": "libqt5webkit5"
        },
        {
            "binary_version": "5.212.0~alpha2-7ubuntu1",
            "binary_name": "qml-module-qtwebkit"
        },
        {
            "binary_version": "5.212.0~alpha2-7ubuntu1",
            "binary_name": "qtwebkit5-doc-html"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-10222.json"
qtwebkit-source

Package

Name
qtwebkit-source
Purl
pkg:deb/ubuntu/qtwebkit-source@2.3.2-0ubuntu13?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.3.2-0ubuntu13

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.3.2-0ubuntu13",
            "binary_name": "libqtwebkit-qmlwebkitplugin"
        },
        {
            "binary_version": "2.3.2-0ubuntu13",
            "binary_name": "libqtwebkit4"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-10222.json"
Ubuntu:20.04:LTS
qtwebkit-opensource-src

Package

Name
qtwebkit-opensource-src
Purl
pkg:deb/ubuntu/qtwebkit-opensource-src@5.212.0~alpha4-1ubuntu2.1?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*
5.212.0~alpha3-3
5.212.0~alpha3-5
5.212.0~alpha3-6
5.212.0~alpha3-7
5.212.0~alpha4-1
5.212.0~alpha4-1ubuntu1
5.212.0~alpha4-1ubuntu2
5.212.0~alpha4-1ubuntu2.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "5.212.0~alpha4-1ubuntu2.1",
            "binary_name": "libqt5webkit5"
        },
        {
            "binary_version": "5.212.0~alpha4-1ubuntu2.1",
            "binary_name": "qml-module-qtwebkit"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-10222.json"
Ubuntu:22.04:LTS
qtwebkit-opensource-src

Package

Name
qtwebkit-opensource-src
Purl
pkg:deb/ubuntu/qtwebkit-opensource-src@5.212.0~alpha4-15ubuntu1?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*
5.212.0~alpha4-12
5.212.0~alpha4-13
5.212.0~alpha4-14
5.212.0~alpha4-14build1
5.212.0~alpha4-14ubuntu2
5.212.0~alpha4-15ubuntu1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "5.212.0~alpha4-15ubuntu1",
            "binary_name": "libqt5webkit5"
        },
        {
            "binary_version": "5.212.0~alpha4-15ubuntu1",
            "binary_name": "qml-module-qtwebkit"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-10222.json"
Ubuntu:24.04:LTS
qtwebkit-opensource-src

Package

Name
qtwebkit-opensource-src
Purl
pkg:deb/ubuntu/qtwebkit-opensource-src@5.212.0~alpha4-36?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*
5.212.0~alpha4-33
5.212.0~alpha4-33build1
5.212.0~alpha4-34
5.212.0~alpha4-34ubuntu3
5.212.0~alpha4-34ubuntu4
5.212.0~alpha4-36

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "5.212.0~alpha4-36",
            "binary_name": "libqt5webkit5"
        },
        {
            "binary_version": "5.212.0~alpha4-36",
            "binary_name": "qml-module-qtwebkit"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-10222.json"