Related Vulnerabilities: CVE-2017-2365  

A validation issue has been found in variable handling in WebKitGTK+ before 2.14.4, leading to cross-origin data exfiltration while processing maliciously crafted web content.

Severity Medium

Remote Yes

Type Information disclosure

Description

A validation issue has been found in variable handling in WebKitGTK+ before 2.14.4, leading to cross-origin data exfiltration while processing maliciously crafted web content.

AVG-171 webkitgtk, webkitgtk2 2.4.11-6 Critical Unknown

AVG-170 webkit2gtk 2.14.3-1 2.14.4-1 Critical Fixed

11 Feb 2017 ASA-201702-9 AVG-170 webkit2gtk Critical multiple issues

https://webkitgtk.org/security/WSA-2017-0002.html