webkitgtk: processing maliciously crafted web content may lead to an arbitrary code execution
Published Dec 15, 2022 ·Due Jan 4, 2023
8.8
HIGHCVSS 3.1
EPSS 8.52%
Description
A type confusion issue was addressed with improved state handling. This issue is fixed in Safari 16.2, tvOS 16.2, macOS Ventura 13.1, iOS 15.7.2 and iPadOS 15.7.2, iOS 16.1.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.1..
Affected products
-
- Version unspecifiedStatusaffectedConstraints<13.1
- Version unspecifiedStatusaffectedConstraints<15.7
- Version unspecifiedStatusaffectedConstraints<16.1
- Version unspecifiedStatusaffectedConstraints<16.2
- Version
No data.
Red Hat Enterprise Linux 7 Extended Lifecycle Support
webkitgtk4-0:2.48.3-2.el7_9
Fixed · RHSA-2025:10364
Red Hat Enterprise Linux 8
webkit2gtk3-0:2.36.7-1.el8_7.1
Fixed · RHSA-2023:0016
Red Hat Enterprise Linux 9
webkit2gtk3-0:2.36.7-1.el9_1.1
Fixed · RHSA-2023:0021
Red Hat Enterprise Linux 6
webkitgtk
Will not fix
Red Hat Enterprise Linux 7
webkitgtk3
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 7 Extended Lifecycle Support | webkitgtk4-0:2.48.3-2.el7_9 | Fixed | RHSA-2025:10364 |
| Red Hat Enterprise Linux 8 | webkit2gtk3-0:2.36.7-1.el8_7.1 | Fixed | RHSA-2023:0016 |
| Red Hat Enterprise Linux 9 | webkit2gtk3-0:2.36.7-1.el9_1.1 | Fixed | RHSA-2023:0021 |
| Red Hat Enterprise Linux 6 | webkitgtk | Will not fix | n/a |
| Red Hat Enterprise Linux 7 | webkitgtk3 | Will not fix | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
Red Hat is not aware of any exploitation of this flaw in Linux platforms at this time.
Red Hat mitigation
Setting the environment variable JSC_useFTLJIT=0 will disable the vulnerable code. (This will also somewhat slow down JavaScript execution.)
References (19)
- http://seclists.org/fulldisclosure/2022/Dec/21 mailing-listMailing ListThird Party Advisory
- http://seclists.org/fulldisclosure/2022/Dec/22 mailing-listMailing ListThird Party Advisory
- http://seclists.org/fulldisclosure/2022/Dec/23 mailing-listMailing ListThird Party Advisory
- http://seclists.org/fulldisclosure/2022/Dec/26 mailing-listMailing ListThird Party Advisory
- http://seclists.org/fulldisclosure/2022/Dec/28 mailing-listMailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2022/12/26/1 mailing-listMailing ListThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2022-42856 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2153683 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-45919 Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2022-42856
- https://security.gentoo.org/glsa/202305-32 Third Party Advisory
- https://support.apple.com/en-us/HT213516 Release NotesVendor Advisory
- https://support.apple.com/en-us/HT213531 Release NotesVendor Advisory
- https://support.apple.com/en-us/HT213532 Release NotesVendor Advisory
- https://support.apple.com/en-us/HT213535 Release NotesVendor Advisory
- https://support.apple.com/en-us/HT213537 Release NotesVendor Advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-42856 government-resourceUS Government Resource
- https://www.cve.org/CVERecord?id=CVE-2022-42856
Change history (0)
No recorded changes yet.