WTF/wtf/FastBitVector.h in WebKit, as distributed in Safari Technology Preview Release 46, allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact because it calls the FastBitVectorWordOwner::resizeSlow function (in WTF/wtf/FastBitVector.cpp) for a purpose other than initializing a bitvector size, and resizeSlow mishandles cases where the old array length is greater than the new array length.
{ "binaries": [ { "binary_name": "libqt5webkit5", "binary_version": "5.5.1+dfsg-2ubuntu1" }, { "binary_name": "libqt5webkit5-dev", "binary_version": "5.5.1+dfsg-2ubuntu1" }, { "binary_name": "libqt5webkit5-qmlwebkitplugin", "binary_version": "5.5.1+dfsg-2ubuntu1" }, { "binary_name": "qml-module-qtwebkit", "binary_version": "5.5.1+dfsg-2ubuntu1" }, { "binary_name": "qtwebkit5-doc-html", "binary_version": "5.5.1+dfsg-2ubuntu1" } ] }
{ "binaries": [ { "binary_name": "gir1.2-javascriptcoregtk-3.0", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "gir1.2-webkit-3.0", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "gir1.2-webkit2-3.0", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libjavascriptcoregtk-1.0-0", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libjavascriptcoregtk-1.0-dev", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libjavascriptcoregtk-3.0-0", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libjavascriptcoregtk-3.0-bin", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libjavascriptcoregtk-3.0-dev", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libwebkit-dev", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libwebkit2gtk-3.0-25", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libwebkit2gtk-3.0-dev", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libwebkitgtk-1.0-0", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libwebkitgtk-1.0-common", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libwebkitgtk-3.0-0", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libwebkitgtk-3.0-common", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libwebkitgtk-3.0-dev", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libwebkitgtk-common-dev", "binary_version": "2.4.11-0ubuntu0.1" }, { "binary_name": "libwebkitgtk-dev", "binary_version": "2.4.11-0ubuntu0.1" } ] }
{ "binaries": [ { "binary_name": "libqt5webkit5", "binary_version": "5.212.0~alpha2-7ubuntu1" }, { "binary_name": "libqt5webkit5-dev", "binary_version": "5.212.0~alpha2-7ubuntu1" }, { "binary_name": "qml-module-qtwebkit", "binary_version": "5.212.0~alpha2-7ubuntu1" }, { "binary_name": "qtwebkit5-doc-html", "binary_version": "5.212.0~alpha2-7ubuntu1" } ] }
{ "binaries": [ { "binary_name": "gir1.2-javascriptcoregtk-3.0", "binary_version": "2.4.11-3ubuntu3" }, { "binary_name": "gir1.2-webkit-3.0", "binary_version": "2.4.11-3ubuntu3" }, { "binary_name": "libjavascriptcoregtk-1.0-0", "binary_version": "2.4.11-3ubuntu3" }, { "binary_name": "libjavascriptcoregtk-1.0-dev", "binary_version": "2.4.11-3ubuntu3" }, { "binary_name": "libjavascriptcoregtk-3.0-0", "binary_version": "2.4.11-3ubuntu3" }, { "binary_name": "libjavascriptcoregtk-3.0-bin", "binary_version": "2.4.11-3ubuntu3" }, { "binary_name": "libjavascriptcoregtk-3.0-dev", "binary_version": "2.4.11-3ubuntu3" }, { "binary_name": "libwebkitgtk-1.0-0", "binary_version": "2.4.11-3ubuntu3" }, { "binary_name": "libwebkitgtk-3.0-0", "binary_version": "2.4.11-3ubuntu3" }, { "binary_name": "libwebkitgtk-3.0-dev", "binary_version": "2.4.11-3ubuntu3" }, { "binary_name": "libwebkitgtk-dev", "binary_version": "2.4.11-3ubuntu3" } ] }