RHSA-2024:9553HighCVSS 8.8
Red Hat Security Advisory: webkit2gtk3 security update
🔗 CVE IDs covered (7)
📋 Description
CVE-2024-27856 — webkitgtk: Processing a file may lead to unexpected app termination or arbitrary code execution CVE-2024-40866 — webkitgtk: Visiting a malicious website may lead to address bar spoofing CVE-2024-44185 — webkitgtk: webkit2gtk: Processing maliciously crafted web content may lead to an unexpected process crash CVE-2024-44187 — webkitgtk: A malicious website may exfiltrate data cross-origin CVE-2024-44244 — webkitgtk: webkit2gtk: Processing maliciously crafted web content may lead to an unexpected process crash CVE-2024-54534 — webkit: Processing maliciously crafted web content may lead to memory corruption CVE-2025-43480 — webkitgtk: A malicious website may exfiltrate data cross-origin
🔗 References (9)
- selfhttps://access.redhat.com/errata/RHSA-2024:9553
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2312724
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2314706
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2323263
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2323278
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2333846
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2344618
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_9553.json