FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-11-27 06:34:59 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
58a738d4-57af-11ee-8c58-b42e991fc52elibwebp heap buffer overflow

chrome-cve-admin@google.com reports:

Heap buffer overflow in WebP in Google Chrome prior to 116.0.5845.187 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Critical) The Tor browser is based on Firefox and GeckoView and uses also libwep so it is affected by this bug.


Discovery 2023-09-12
Entry 2023-09-20
tor-browser
< 12.5.3

CVE-2023-4863
https://nvd.nist.gov/vuln/detail/CVE-2023-4863