CVE Feed

    Dashboard / CVE / CVE-2019-8720

    CVE-2019-8720

    A vulnerability was found in WebKit. The flaw is triggered when processing maliciously crafted web content that may lead to arbitrary code execution. Improved memory handling addresses the multiple memory corruption issues.

    Published:Oct 29, 2019
    Last Modified:Nov 18, 2025
    EPS:Mar 6, 2023
    EPSS Score:0.05095
    CVSS Score:8.8

    CISA Notification

    Description

    A vulnerability was found in WebKit. The flaw is triggered when processing maliciously crafted web content that may lead to arbitrary code execution. Improved memory handling addresses the multiple memory corruption issues.

    Required Action:

    Apply updates per vendor instructions.

    Notes:

    No extra notes provided.

    Due Date
    Jun 13, 2022
    1551 days ago
    Alert Date
    May 23, 2022
    1572 days ago

    Affected Products

    Vendor
    Redhat
    Product
    Codeready Linux Builder
    Vendor
    Redhat
    Product
    Codeready Linux Builder Eus
    Vendor
    Redhat
    Product
    Codeready Linux Builder For Arm64 Eus
    Vendor
    Redhat
    Product
    Codeready Linux Builder For Ibm Z Systems Eus
    Vendor
    Redhat
    Product
    Codeready Linux Builder For Power Little Endian Eus
    Vendor
    Redhat
    Product
    Enterprise Linux
    Vendor
    Redhat
    Product
    Enterprise Linux Desktop
    Vendor
    Redhat
    Product
    Enterprise Linux Eus
    Vendor
    Redhat
    Product
    Enterprise Linux For Arm64 Eus
    Vendor
    Redhat
    Product
    Enterprise Linux For Ibm Z Systems
    Vendor
    Redhat
    Product
    Enterprise Linux For Ibm Z Systems Eus
    Vendor
    Redhat
    Product
    Enterprise Linux For Power Big Endian
    Vendor
    Redhat
    Product
    Enterprise Linux For Power Little Endian
    Vendor
    Redhat
    Product
    Enterprise Linux For Power Little Endian Eus
    Vendor
    Redhat
    Product
    Enterprise Linux For Scientific Computing
    Vendor
    Redhat
    Product
    Enterprise Linux Server
    Vendor
    Redhat
    Product
    Enterprise Linux Server Aus
    Vendor
    Redhat
    Product
    Enterprise Linux Server For Power Little Endian Update Services For Sap Solutions
    Vendor
    Redhat
    Product
    Enterprise Linux Server Tus
    Vendor
    Redhat
    Product
    Enterprise Linux Server Update Services For Sap Solutions
    Vendor
    Redhat
    Product
    Enterprise Linux Workstation
    Vendor
    Webkitgtk
    Product
    Webkitgtk
    Vendor
    Wpewebkit
    Product
    Wpe Webkit

    Exploits

    No exploit reference

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High