In WebKitGTK before 2.32.4, there is incorrect memory allocation in WebCore::ImageBufferCairoImageSurfaceBackend::create, leading to a segmentation violation and application crash, a different vulnerability than CVE-2021-30889.
The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.
Link | Tags |
---|---|
https://github.com/ChijinZ/security_advisories/tree/master/webkitgtk-2.32.3 | third party advisory exploit |
http://www.openwall.com/lists/oss-security/2022/01/21/2 | third party advisory mailing list |