BubblewrapLauncher.cpp in WebKitGTK and WPE WebKit before 2.34.1 allows a limited sandbox bypass that allows a sandboxed process to trick host processes into thinking the sandboxed process is not confined by the sandbox, by abusing VFS syscalls that manipulate its filesystem namespace. The impact is limited to host services that create UNIX sockets that WebKit mounts inside its sandbox, and the sandboxed process remains otherwise confined. NOTE: this is similar to CVE-2021-41133.
{
"binaries": [
{
"binary_version": "5.5.1+dfsg-2ubuntu1",
"binary_name": "libqt5webkit5"
},
{
"binary_version": "5.5.1+dfsg-2ubuntu1",
"binary_name": "libqt5webkit5-dev"
},
{
"binary_version": "5.5.1+dfsg-2ubuntu1",
"binary_name": "libqt5webkit5-qmlwebkitplugin"
},
{
"binary_version": "5.5.1+dfsg-2ubuntu1",
"binary_name": "qml-module-qtwebkit"
},
{
"binary_version": "5.5.1+dfsg-2ubuntu1",
"binary_name": "qtwebkit5-doc-html"
}
]
}{
"binaries": [
{
"binary_version": "2.20.5-0ubuntu0.16.04.1",
"binary_name": "gir1.2-javascriptcoregtk-4.0"
},
{
"binary_version": "2.20.5-0ubuntu0.16.04.1",
"binary_name": "gir1.2-webkit2-4.0"
},
{
"binary_version": "2.20.5-0ubuntu0.16.04.1",
"binary_name": "libjavascriptcoregtk-4.0-18"
},
{
"binary_version": "2.20.5-0ubuntu0.16.04.1",
"binary_name": "libjavascriptcoregtk-4.0-bin"
},
{
"binary_version": "2.20.5-0ubuntu0.16.04.1",
"binary_name": "libjavascriptcoregtk-4.0-dev"
},
{
"binary_version": "2.20.5-0ubuntu0.16.04.1",
"binary_name": "libwebkit2gtk-4.0-37"
},
{
"binary_version": "2.20.5-0ubuntu0.16.04.1",
"binary_name": "libwebkit2gtk-4.0-37-gtk2"
},
{
"binary_version": "2.20.5-0ubuntu0.16.04.1",
"binary_name": "libwebkit2gtk-4.0-dev"
}
]
}{
"binaries": [
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "gir1.2-javascriptcoregtk-3.0"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "gir1.2-webkit-3.0"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "gir1.2-webkit2-3.0"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libjavascriptcoregtk-1.0-0"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libjavascriptcoregtk-1.0-dev"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libjavascriptcoregtk-3.0-0"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libjavascriptcoregtk-3.0-bin"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libjavascriptcoregtk-3.0-dev"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libwebkit-dev"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libwebkit2gtk-3.0-25"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libwebkit2gtk-3.0-dev"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libwebkitgtk-1.0-0"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libwebkitgtk-1.0-common"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libwebkitgtk-3.0-0"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libwebkitgtk-3.0-common"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libwebkitgtk-3.0-dev"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libwebkitgtk-common-dev"
},
{
"binary_version": "2.4.11-0ubuntu0.1",
"binary_name": "libwebkitgtk-dev"
}
]
}{
"binaries": [
{
"binary_version": "5.212.0~alpha2-7ubuntu1",
"binary_name": "libqt5webkit5"
},
{
"binary_version": "5.212.0~alpha2-7ubuntu1",
"binary_name": "libqt5webkit5-dev"
},
{
"binary_version": "5.212.0~alpha2-7ubuntu1",
"binary_name": "qml-module-qtwebkit"
},
{
"binary_version": "5.212.0~alpha2-7ubuntu1",
"binary_name": "qtwebkit5-doc-html"
}
]
}{
"binaries": [
{
"binary_version": "2.4.11-3ubuntu3",
"binary_name": "gir1.2-javascriptcoregtk-3.0"
},
{
"binary_version": "2.4.11-3ubuntu3",
"binary_name": "gir1.2-webkit-3.0"
},
{
"binary_version": "2.4.11-3ubuntu3",
"binary_name": "libjavascriptcoregtk-1.0-0"
},
{
"binary_version": "2.4.11-3ubuntu3",
"binary_name": "libjavascriptcoregtk-1.0-dev"
},
{
"binary_version": "2.4.11-3ubuntu3",
"binary_name": "libjavascriptcoregtk-3.0-0"
},
{
"binary_version": "2.4.11-3ubuntu3",
"binary_name": "libjavascriptcoregtk-3.0-bin"
},
{
"binary_version": "2.4.11-3ubuntu3",
"binary_name": "libjavascriptcoregtk-3.0-dev"
},
{
"binary_version": "2.4.11-3ubuntu3",
"binary_name": "libwebkitgtk-1.0-0"
},
{
"binary_version": "2.4.11-3ubuntu3",
"binary_name": "libwebkitgtk-3.0-0"
},
{
"binary_version": "2.4.11-3ubuntu3",
"binary_name": "libwebkitgtk-3.0-dev"
},
{
"binary_version": "2.4.11-3ubuntu3",
"binary_name": "libwebkitgtk-dev"
}
]
}{
"binaries": [
{
"binary_version": "2.34.1-0ubuntu0.20.04.1",
"binary_name": "gir1.2-javascriptcoregtk-4.0"
},
{
"binary_version": "2.34.1-0ubuntu0.20.04.1",
"binary_name": "gir1.2-webkit2-4.0"
},
{
"binary_version": "2.34.1-0ubuntu0.20.04.1",
"binary_name": "libjavascriptcoregtk-4.0-18"
},
{
"binary_version": "2.34.1-0ubuntu0.20.04.1",
"binary_name": "libjavascriptcoregtk-4.0-bin"
},
{
"binary_version": "2.34.1-0ubuntu0.20.04.1",
"binary_name": "libjavascriptcoregtk-4.0-dev"
},
{
"binary_version": "2.34.1-0ubuntu0.20.04.1",
"binary_name": "libwebkit2gtk-4.0-37"
},
{
"binary_version": "2.34.1-0ubuntu0.20.04.1",
"binary_name": "libwebkit2gtk-4.0-37-gtk2"
},
{
"binary_version": "2.34.1-0ubuntu0.20.04.1",
"binary_name": "libwebkit2gtk-4.0-dev"
},
{
"binary_version": "2.34.1-0ubuntu0.20.04.1",
"binary_name": "webkit2gtk-driver"
}
],
"availability": "No subscription required"
}{
"binaries": [
{
"binary_version": "2.34.1-1ubuntu1",
"binary_name": "gir1.2-javascriptcoregtk-4.0"
},
{
"binary_version": "2.34.1-1ubuntu1",
"binary_name": "gir1.2-webkit2-4.0"
},
{
"binary_version": "2.34.1-1ubuntu1",
"binary_name": "libjavascriptcoregtk-4.0-18"
},
{
"binary_version": "2.34.1-1ubuntu1",
"binary_name": "libjavascriptcoregtk-4.0-bin"
},
{
"binary_version": "2.34.1-1ubuntu1",
"binary_name": "libjavascriptcoregtk-4.0-dev"
},
{
"binary_version": "2.34.1-1ubuntu1",
"binary_name": "libwebkit2gtk-4.0-37"
},
{
"binary_version": "2.34.1-1ubuntu1",
"binary_name": "libwebkit2gtk-4.0-dev"
},
{
"binary_version": "2.34.1-1ubuntu1",
"binary_name": "webkit2gtk-driver"
}
],
"availability": "No subscription required"
}