CVE-2021-42762: Medium severity oracle webkitgtk4-jsc vulnerability
BubblewrapLauncher.cpp in WebKitGTK and WPE WebKit before 2.34.1 allows a limited sandbox bypass that allows a sandboxed process to trick host processes into thinking the sandboxed process is not confined by the sandbox, by abusing VFS syscalls that manipulate its filesystem namespace. The impact is limited to host services that create UNIX sockets that WebKit mounts inside its sandbox, and the sandboxed process remains otherwise confined. NOTE: this is similar to CVE-2021-41133.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-42762.
What is the severity of CVE-2021-42762?
The severity of CVE-2021-42762 is medium with a severity value of 5.3.
Which software is affected by CVE-2021-42762?
The software affected by CVE-2021-42762 includes WebKitGTK version up to 2.34.1, WPE WebKit version up to 2.34.1, webkit2gtk package on Debian, and wpewebkit package on Debian.
How can the vulnerability be exploited?
The vulnerability can be exploited by a sandboxed process tricking host processes into thinking it is not confined by the sandbox, by abusing VFS syscalls that manipulate its filesystem namespace.
How can CVE-2021-42762 be fixed?
To fix CVE-2021-42762, it is recommended to update to the patched versions of WebKitGTK (2.36.4-1~deb10u1 and later) and WPE WebKit (2.38.6-1~deb11u1 and later), or the latest available versions.