A vulnerability was found in WebKit. The flaw is triggered when processing maliciously crafted web content that may lead to arbitrary code execution. Improved memory handling addresses the multiple memory corruption issues.
References
| Link | Resource |
|---|---|
| https://bugzilla.redhat.com/show_bug.cgi?id=1876611 | Issue Tracking Third Party Advisory |
| https://webkitgtk.org/security/WSA-2019-0005.html | Vendor Advisory |
| https://bugzilla.redhat.com/show_bug.cgi?id=1876611 | Issue Tracking Third Party Advisory |
| https://webkitgtk.org/security/WSA-2019-0005.html | Vendor Advisory |
| https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-8720 | US Government Resource |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
18 Nov 2025, 13:24
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:redhat:enterprise_linux_for_arm64:8.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:-:*:*:* |
cpe:2.3:o:redhat:enterprise_linux_eus:8.6:*:*:*:*:*:arm64:* cpe:2.3:o:redhat:enterprise_linux_eus:8.4:*:*:*:*:*:arm64:* cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:arm64:* |
06 Nov 2025, 14:50
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-8720 - US Government Resource |
22 Oct 2025, 00:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Oct 2025, 20:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Oct 2025, 19:18
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Nov 2024, 04:50
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://bugzilla.redhat.com/show_bug.cgi?id=1876611 - Issue Tracking, Third Party Advisory | |
| References | () https://webkitgtk.org/security/WSA-2019-0005.html - Vendor Advisory |
Information
Published : 2023-03-06 23:15
Updated : 2025-11-18 13:24
NVD link : CVE-2019-8720
Mitre link : CVE-2019-8720
CVE.ORG link : CVE-2019-8720
JSON object : View
Products Affected
redhat
- enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions
- enterprise_linux
- codeready_linux_builder_for_power_little_endian_eus
- enterprise_linux_eus
- enterprise_linux_workstation
- codeready_linux_builder_for_arm64_eus
- codeready_linux_builder
- enterprise_linux_for_ibm_z_systems
- enterprise_linux_server_aus
- codeready_linux_builder_for_ibm_z_systems_eus
- enterprise_linux_for_power_little_endian
- enterprise_linux_server_tus
- enterprise_linux_for_power_big_endian
- enterprise_linux_for_arm64_eus
- codeready_linux_builder_eus
- enterprise_linux_for_ibm_z_systems_eus
- enterprise_linux_for_scientific_computing
- enterprise_linux_desktop
- enterprise_linux_for_power_little_endian_eus
- enterprise_linux_server_update_services_for_sap_solutions
- enterprise_linux_server
wpewebkit
- wpe_webkit
webkitgtk
- webkitgtk
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
