CVE-2018-12294: Use After Free
Published Jun 19, 2018
·Updated
WebCore/platform/graphics/texmap/TextureMapperLayer.cpp in WebKit, as used in WebKitGTK+ prior to version 2.20.2, is vulnerable to a use after free for a WebCore::TextureMapperLayer object.
Affected Software
1 affected component
WebKit Webkitgtk\+<2.20.2
Event History
Jun 19, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-12294?
CVE-2018-12294 is a vulnerability found in WebKitGTK+ prior to version 2.20.2 that allows for a use-after-free vulnerability in WebCore::TextureMapperLayer object.
2
How severe is CVE-2018-12294?
CVE-2018-12294 has a severity rating of 8.8 (high).
3
How does CVE-2018-12294 impact WebKitGTK+?
CVE-2018-12294 can lead to a use-after-free vulnerability in WebCore::TextureMapperLayer object within WebKitGTK+.
4
Which software versions are affected by CVE-2018-12294?
WebKitGTK+ versions prior to 2.20.2 are affected by CVE-2018-12294.
5
How can the vulnerability CVE-2018-12294 be mitigated?
Updating WebKitGTK+ to version 2.20.2 or later will mitigate the vulnerability.