[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#479644: libqt4-webkit:CVE-2008-1025 Cross-site scripting (XSS) vulnerability in Apple WebKit



On Wednesday 07 May 2008, Michael Gilbert wrote:
> i believe that this is actually an issue with webkit itself, not the
> libqt4-webkit package (which uses webkit as a library).  CVE-2008-1025
> seems to indicate that the issue is wholely within webkit (there is no
> mention of qt).
>
> submitter, do you have further details that would confirm that the
> problem also resides in libqt4-webkit?  otherwise, this bug should be
> reassigned to webkit.

Qt embeds a full copy of webkit, so there is a quite big chance that it is 
vulnerable.

/Sune
-- 
I'm not able to remove a proxy from Office 9.5, how does it work?

The point is that from the preferences within Word NT you neither ever have to 
insert the MIDI hardware, nor should digit from a virus of the clock for 
removing from a FPU on the IRC mouse over a utility over the ISA forward.

Attachment: signature.asc
Description: This is a digitally signed message part.


Reply to: