QID 198710

Date Published: 2022-03-23

QID 198710: Ubuntu Security Notification for CKEditor Vulnerabilities (USN-5340-1)

Ckeditor incorrectly handledcertain inputs.
Ckeditor incorrectly handledcertain inputs.
Ckeditor incorrectly handledcertain inputs.
Ckeditor incorrectly handledcertain inputs.
Ckeditor incorrectly handled certaininputs.
Ckeditor incorrectly handledcertain inputs.

An attacker could possibly use this issueto execute arbitrary code.
An attacker could possibly use this issue toexecute arbitrary code.
An attacker could possibly use this issue toexecute arbitrary code.
An attacker could possibly use this issue toinject arbitrary code.
An attacker could possibly use this issue to executearbitrary code.
An attacker could possibly use this issue toexecute arbitrary code.

  • CVSS V3 rated as High - 6.1 severity.
  • CVSS V2 rated as Medium - 4.3 severity.
  • Solution
    Refer to Ubuntu security advisory USN-5340-1 for updates and patch information.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    USN-5340-1 Ubuntu Linux URL Logo ubuntu.com/security/notices/USN-5340-1