CVE-2013-7324: Medium severity WebKitGTK WebKitGTK vulnerability
Webkit-GTK 2.x (any version with HTML5 audio/video support based on GStreamer) allows remote attackers to trigger unexpectedly high sound volume via malicious javascript. NOTE: this WebKit-GTK behavior complies with existing W3C standards and existing practices for GNOME desktop integration.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2013-7324?
CVE-2013-7324 is a vulnerability in Webkit-GTK 2.x that allows remote attackers to trigger unexpectedly high sound volume via malicious javascript.
What is the severity of CVE-2013-7324?
The severity of CVE-2013-7324 is medium, with a CVSS score of 5.3.
How does CVE-2013-7324 affect Webkit-GTK?
CVE-2013-7324 affects Webkit-GTK 2.x versions with HTML5 audio/video support based on GStreamer.
How can CVE-2013-7324 be exploited?
CVE-2013-7324 can be exploited by remote attackers through the use of malicious javascript.
Are there any recommended fixes for CVE-2013-7324?
It is recommended to update to a version of Webkit-GTK that is not affected by CVE-2013-7324.