Red Hat Security Advisory: webkit2gtk3 security update
🔗 CVE IDs covered (21)
📋 Description
CVE-2022-32885 — webkitgtk: Memory corruption issue when processing web content CVE-2023-28198 — webkitgtk: use after free vulnerability CVE-2023-32435 — webkitgtk: memory corruption issue leading to arbitrary code execution CVE-2023-32439 — webkitgtk: type confusion issue leading to arbitrary code execution CVE-2023-35074 — webkitgtk: processing web content may lead to arbitrary code execution CVE-2023-37450 — webkitgtk: arbitrary code execution CVE-2023-38594 — webkitgtk: arbitrary code execution CVE-2023-38595 — webkitgtk: arbitrary code execution CVE-2023-41074 — webkitgtk: processing web content may lead to arbitrary code execution CVE-2023-41993 — webkitgtk: processing malicious web content may lead to arbitrary code execution CVE-2023-42916 — webkitgtk: Out-of-bounds read leads to sensitive data leak CVE-2024-23222 — webkitgtk: type confusion may lead to arbitrary code execution CVE-2024-23252 — webkit: processing malicious web content may lead to denial-of-service CVE-2024-27808 — webkitgtk: Processing web content may lead to arbitrary code execution CVE-2024-27833 — webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution CVE-2024-27834 — webkit: pointer authentication bypass CVE-2025-24223 — webkitgtk: Processing maliciously crafted web content may lead to memory corruption CVE-2025-24264 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2025-31204 — webkitgtk: Processing maliciously crafted web content may lead to memory corruption CVE-2025-31206 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2025-31215 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash
🔗 References (5)
- selfhttps://access.redhat.com/errata/RHSA-2023:4202
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2218626
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2218640
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_4202.json