Описание
A flaw was found in WebKitGTK and WPE WebKit. This vulnerability allows an out-of-bounds read and integer underflow, leading to a UIProcess crash (DoS) via a crafted payload to the GLib remote inspector server.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| webkit2gtk | fixed | 2.50.2-1 | package | |
| wpewebkit | fixed | 2.50.2-1 | package | |
| wpewebkit | ignored | trixie | package | |
| wpewebkit | ignored | bookworm | package | |
| wpewebkit | end-of-life | bullseye | package |
Примечания
https://bugzilla.redhat.com/show_bug.cgi?id=2416300
https://webkitgtk.org/security/WSA-2025-0009.html
Связанные уязвимости
A flaw was found in WebKitGTK and WPE WebKit. This vulnerability allows an out-of-bounds read and integer underflow, leading to a UIProcess crash (DoS) via a crafted payload to the GLib remote inspector server.
A flaw was found in WebKitGTK and WPE WebKit. This vulnerability allows an out-of-bounds read and integer underflow, leading to a UIProcess crash (DoS) via a crafted payload to the GLib remote inspector server.
A flaw was found in WebKitGTK and WPE WebKit. This vulnerability allows an out-of-bounds read and integer underflow, leading to a UIProcess crash (DoS) via a crafted payload to the GLib remote inspector server.