First published: Sat Dec 25 2021(Updated: )
In WebKitGTK before 2.32.4, there is a use-after-free in WebCore::ContainerNode::firstChild, a different vulnerability than CVE-2021-30889.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
WebKitGTK WebKitGTK | <2.32.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-45482 is a use-after-free vulnerability in WebKitGTK before version 2.32.4, specifically in the WebCore::ContainerNode::firstChild function.
CVE-2021-45482 has a severity level of 6.5 (medium).
Versions of WebKitGTK up to (but excluding) version 2.32.4 are affected by CVE-2021-45482.
To fix CVE-2021-45482, update your WebKitGTK installation to version 2.32.4 or later.
You can find more information about CVE-2021-45482 in the following references: [Reference 1](http://www.openwall.com/lists/oss-security/2022/01/21/2), [Reference 2](https://github.com/ChijinZ/security_advisories/tree/master/webkitgtk-2.32.3).