CVE Tools

CVE-2018-12293

Published: Jun 19, 2018Updated: Nov 21, 2024 Sources: CVE List NVDCWE-190

Description

The getImageData function in the ImageBufferCairo class in WebCore/platform/graphics/cairo/ImageBufferCairo.cpp in WebKit, as used in WebKitGTK+ prior to version 2.20.3 and WPE WebKit prior to version 2.20.1, is vulnerable to a heap-based buffer overflow triggered by an integer overflow, which could be abused by crafted HTML content.

In plain language

AI Worth attention

CVE-2018-12293 is a serious browser bug in WebKit (WebKitGTK+ and WPE WebKit) where a malicious webpage can cause the browser to corrupt memory and potentially run code—small businesses using these browsers should update to the fixed versions.

Executive summary

Remote Code Execution is possible in WebKit’s ImageBufferCairo::getImageData (heap-based buffer overflow via an integer overflow) when a victim loads crafted HTML in WebKitGTK+ before 2.20.3 or WPE WebKit before 2.20.1; no authentication is required.

If affected, business impact
Full application takeoverMalware installationData theftSystem compromise

What to do now

  1. Check whether your systems use WebKitGTK+ (and its version) or WPE WebKit, and identify any installations older than 2.20.3 (WebKitGTK+) or 2.20.1 (WPE WebKit).
  2. If you are running an affected version, plan an update immediately to WebKitGTK+ 2.20.3 or later.
  3. If you are running WPE WebKit, update immediately to WPE WebKit 2.20.1 or later.
  4. After updating, test that browsing or any app using the affected WebKit components still works normally and that the old version is no longer present.
Patch / advisory Usually a quick update

CVSS Vector Breakdown

AV:NAC:LPR:NUI:RS:UC:HI:HA:H
Exploitability
AV:NAttack Vector
Network
AC:LAttack Complexity
Low
PR:NPrivileges Required
None
UI:RUser Interaction
Required
Scope
S:UScope
Unchanged
Impact
C:HConfidentiality
High
I:HIntegrity
High
A:HAvailability
High

Weaknesses

Affected Products

canonical
commercial·GBaka canonical ltd.
webkitgtk
oss-projectaka webkitgtk+, webkit2gtk, webkit2gtk3
wpewebkit
oss-projectaka wpewebkit webkit
and 1 more affected products View all →

Exploitability

2 exploit sources identified

Exploit details including PoC links, Metasploit modules, and scanner templates are available after registration.

View exploit details
Official Patch Available

Attack Graph

Products CVE Techniques Tactics

Click technique nodes for MITRE ATT&CK details · drag to pan · Ctrl/ + scroll to zoom, or go fullscreen.

MITRE ATT&CK

2 techniques
Initial Access
Privilege Escalation
View detailed technique mapping

References

and 5 more references View all →

Unlock Complete Vulnerability Intelligence

Get the full picture for CVE-2018-12293 and every CVE in our database. Create a free account — no credit card required.

Create Free Account
Plain-language analysis
Impact assessment and exploitation scenario in plain English
Attack graph visualization
Interactive attack path and kill chain mapping
Exploit details & PoC links
ExploitDB, Metasploit, GitHub PoCs with direct links
Nuclei scanner templates
Ready-to-use vulnerability scanner templates
Full remediation guide
Patch instructions, workarounds, and compliance impact
Interactive AI chat
Ask questions about this vulnerability in natural language
Related vulnerabilities
Semantically similar CVEs and attack patterns
REST API & MCP access
Integrate vulnerability data into your workflows