CVE Vulnerabilities

CVE-2019-11070

Published: Apr 10, 2019 | Modified: Nov 07, 2023
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
6.5 MODERATE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Ubuntu
MEDIUM

WebKitGTK and WPE WebKit prior to version 2.24.1 failed to properly apply configured HTTP proxy settings when downloading livestream video (HLS, DASH, or Smooth Streaming), an error resulting in deanonymization. This issue was corrected by changing the way livestreams are downloaded.

Affected Software

Name Vendor Start Version End Version
Webkitgtk Webkitgtk * 2.24.1 (excluding)
Wpe_webkit Wpewebkit * 2.24.1 (excluding)
Red Hat Enterprise Linux 7 RedHat webkitgtk4-0:2.28.2-2.el7 *
Red Hat Enterprise Linux 8 RedHat accountsservice-0:0.6.50-7.el8 *
Red Hat Enterprise Linux 8 RedHat appstream-data-0:8-20190805.el8 *
Red Hat Enterprise Linux 8 RedHat baobab-0:3.28.0-2.el8 *
Red Hat Enterprise Linux 8 RedHat chrome-gnome-shell-0:10.1-6.el8 *
Red Hat Enterprise Linux 8 RedHat evince-0:3.28.4-3.el8 *
Red Hat Enterprise Linux 8 RedHat file-roller-0:3.28.1-2.el8 *
Red Hat Enterprise Linux 8 RedHat gdk-pixbuf2-0:2.36.12-5.el8 *
Red Hat Enterprise Linux 8 RedHat gdm-1:3.28.3-22.el8 *
Red Hat Enterprise Linux 8 RedHat gjs-0:1.56.2-3.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-control-center-0:3.28.2-5.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-desktop3-0:3.32.2-1.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-remote-desktop-0:0.1.6-5.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-settings-daemon-0:3.32.0-4.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-shell-0:3.32.2-9.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-shell-extensions-0:3.32.1-10.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-software-0:3.30.6-2.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-tweaks-0:3.28.1-6.el8 *
Red Hat Enterprise Linux 8 RedHat gsettings-desktop-schemas-0:3.32.0-3.el8 *
Red Hat Enterprise Linux 8 RedHat gtk3-0:3.22.30-4.el8 *
Red Hat Enterprise Linux 8 RedHat gvfs-0:1.36.2-6.el8 *
Red Hat Enterprise Linux 8 RedHat mozjs60-0:60.9.0-3.el8 *
Red Hat Enterprise Linux 8 RedHat mutter-0:3.32.2-10.el8 *
Red Hat Enterprise Linux 8 RedHat nautilus-0:3.28.1-10.el8 *
Red Hat Enterprise Linux 8 RedHat pango-0:1.42.4-6.el8 *
Red Hat Enterprise Linux 8 RedHat pidgin-0:2.13.0-5.el8 *
Red Hat Enterprise Linux 8 RedHat plymouth-0:0.9.3-15.el8 *
Red Hat Enterprise Linux 8 RedHat SDL-0:1.2.15-35.el8 *
Red Hat Enterprise Linux 8 RedHat wayland-protocols-0:1.17-1.el8 *
Red Hat Enterprise Linux 8 RedHat webkit2gtk3-0:2.24.3-1.el8 *
Red Hat Enterprise Linux 8 RedHat accountsservice-0:0.6.50-7.el8 *
Red Hat Enterprise Linux 8 RedHat appstream-data-0:8-20190805.el8 *
Red Hat Enterprise Linux 8 RedHat baobab-0:3.28.0-2.el8 *
Red Hat Enterprise Linux 8 RedHat chrome-gnome-shell-0:10.1-6.el8 *
Red Hat Enterprise Linux 8 RedHat evince-0:3.28.4-3.el8 *
Red Hat Enterprise Linux 8 RedHat file-roller-0:3.28.1-2.el8 *
Red Hat Enterprise Linux 8 RedHat gdk-pixbuf2-0:2.36.12-5.el8 *
Red Hat Enterprise Linux 8 RedHat gdm-1:3.28.3-22.el8 *
Red Hat Enterprise Linux 8 RedHat gjs-0:1.56.2-3.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-control-center-0:3.28.2-5.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-desktop3-0:3.32.2-1.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-remote-desktop-0:0.1.6-5.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-settings-daemon-0:3.32.0-4.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-shell-0:3.32.2-9.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-shell-extensions-0:3.32.1-10.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-software-0:3.30.6-2.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-tweaks-0:3.28.1-6.el8 *
Red Hat Enterprise Linux 8 RedHat gsettings-desktop-schemas-0:3.32.0-3.el8 *
Red Hat Enterprise Linux 8 RedHat gtk3-0:3.22.30-4.el8 *
Red Hat Enterprise Linux 8 RedHat gvfs-0:1.36.2-6.el8 *
Red Hat Enterprise Linux 8 RedHat mozjs60-0:60.9.0-3.el8 *
Red Hat Enterprise Linux 8 RedHat mutter-0:3.32.2-10.el8 *
Red Hat Enterprise Linux 8 RedHat nautilus-0:3.28.1-10.el8 *
Red Hat Enterprise Linux 8 RedHat pango-0:1.42.4-6.el8 *
Red Hat Enterprise Linux 8 RedHat pidgin-0:2.13.0-5.el8 *
Red Hat Enterprise Linux 8 RedHat plymouth-0:0.9.3-15.el8 *
Red Hat Enterprise Linux 8 RedHat SDL-0:1.2.15-35.el8 *
Red Hat Enterprise Linux 8 RedHat wayland-protocols-0:1.17-1.el8 *
Red Hat Enterprise Linux 8 RedHat webkit2gtk3-0:2.24.3-1.el8 *
Qtwebkit Ubuntu eoan *
Qtwebkit-opensource-src Ubuntu bionic *
Qtwebkit-opensource-src Ubuntu cosmic *
Qtwebkit-opensource-src Ubuntu disco *
Qtwebkit-opensource-src Ubuntu eoan *
Qtwebkit-opensource-src Ubuntu groovy *
Qtwebkit-opensource-src Ubuntu hirsute *
Qtwebkit-opensource-src Ubuntu impish *
Qtwebkit-opensource-src Ubuntu kinetic *
Qtwebkit-opensource-src Ubuntu lunar *
Qtwebkit-opensource-src Ubuntu trusty *
Qtwebkit-opensource-src Ubuntu xenial *
Qtwebkit-source Ubuntu bionic *
Qtwebkit-source Ubuntu cosmic *
Qtwebkit-source Ubuntu disco *
Qtwebkit-source Ubuntu trusty *
Qtwebkit-source Ubuntu xenial *
Webkit2gtk Ubuntu bionic *
Webkit2gtk Ubuntu cosmic *
Webkit2gtk Ubuntu esm-infra/bionic *
Webkit2gtk Ubuntu upstream *
Webkit2gtk Ubuntu xenial *
Webkitgtk Ubuntu bionic *
Webkitgtk Ubuntu cosmic *
Webkitgtk Ubuntu trusty *
Webkitgtk Ubuntu xenial *

References