Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2019-11070
Description:WebKitGTK and WPE WebKit prior to version 2.24.1 failed to properly apply configured HTTP proxy settings when downloading livestream video (HLS, DASH, or Smooth Streaming), an error resulting in deanonymization. This issue was corrected by changing the way livestreams are downloaded.
Test IDs: 1.3.6.1.4.1.25623.1.1.4.2019.1137.1   1.3.6.1.4.1.25623.1.1.4.2019.1155.1   1.3.6.1.4.1.25623.1.0.852496   1.3.6.1.4.1.25623.1.0.852488  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2019-11070
Bugtraq: 20190411 WebKitGTK and WPE WebKit Security Advisory WSA-2019-0002 (Google Search)
https://seclists.org/bugtraq/2019/Apr/21
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YO5ZBUWOOXMVZPBYLZRDZF6ZQGBYJERQ/
https://security.gentoo.org/glsa/201909-05
http://packetstormsecurity.com/files/152485/WebKitGTK-WPE-WebKit-URI-Spoofing-Code-Execution.html
https://bugs.webkit.org/show_bug.cgi?id=193718
https://trac.webkit.org/changeset/243197/webkit
http://www.openwall.com/lists/oss-security/2019/04/11/1
SuSE Security Announcement: openSUSE-SU-2019:1374 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00025.html
SuSE Security Announcement: openSUSE-SU-2019:1391 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00031.html
https://usn.ubuntu.com/3948-1/




© 1998-2025 E-Soft Inc. All rights reserved.