{ "CVE_data_meta": { "ASSIGNER": "cve@mitre.org", "ID": "CVE-2020-10018", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "n/a", "version": { "version_data": [ { "version_value": "n/a" } ] } } ] }, "vendor_name": "n/a" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "WebKitGTK through 2.26.4 and WPE WebKit through 2.26.4 (which are the versions right before 2.28.0) contains a memory corruption issue (use-after-free) that may lead to arbitrary code execution. This issue has been fixed in 2.28.0 with improved memory handling." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "n/a" } ] } ] }, "references": { "reference_data": [ { "refsource": "MISC", "name": "https://bugs.webkit.org/show_bug.cgi?id=204342#c21", "url": "https://bugs.webkit.org/show_bug.cgi?id=204342#c21" }, { "refsource": "MISC", "name": "https://webkitgtk.org/security/WSA-2020-0003.html", "url": "https://webkitgtk.org/security/WSA-2020-0003.html" }, { "refsource": "MISC", "name": "https://wpewebkit.org/security/WSA-2020-0003.html", "url": "https://wpewebkit.org/security/WSA-2020-0003.html" }, { "refsource": "DEBIAN", "name": "DSA-4641", "url": "https://www.debian.org/security/2020/dsa-4641" }, { "refsource": "FEDORA", "name": "FEDORA-2020-f3fa778924", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GLERWAS2LL7SX2GHA2DDZ2PL3QC5OHIF/" }, { "refsource": "FEDORA", "name": "FEDORA-2020-f25793aac4", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DOR5LPL4UASVAR76EIHCL4O2KGDWGC6K/" }, { "refsource": "UBUNTU", "name": "USN-4310-1", "url": "https://usn.ubuntu.com/4310-1/" }, { "refsource": "SUSE", "name": "openSUSE-SU-2020:0602", "url": "http://lists.opensuse.org/opensuse-security-announce/2020-05/msg00008.html" }, { "refsource": "GENTOO", "name": "GLSA-202006-08", "url": "https://security.gentoo.org/glsa/202006-08" } ] } }