Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2021:1586

Опубликовано: 18 мая 2021
Источник: rocky
Оценка: Moderate

Описание

Moderate: GNOME security, bug fix, and enhancement update

GNOME is the default desktop environment of Rocky Linux.

The following packages have been upgraded to a later upstream version: accountsservice (0.6.55), webkit2gtk3 (2.30.4). (BZ#1846376, BZ#1883304)

Security Fix(es):

  • webkitgtk: type confusion may lead to arbitrary code execution (CVE-2020-9948)

  • webkitgtk: use-after-free may lead to arbitrary code execution (CVE-2020-9951)

  • webkitgtk: out-of-bounds write may lead to code execution (CVE-2020-9983)

  • webkitgtk: use-after-free may lead to arbitrary code execution (CVE-2020-13543)

  • webkitgtk: use-after-free may lead to arbitrary code execution (CVE-2020-13584)

  • glib2: insecure permissions for files and directories (CVE-2019-13012)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
gaminx86_6432.el8gamin-0.1.10-32.el8.x86_64.rpm

Показывать по

Связанные уязвимости

oracle-oval
около 4 лет назад

ELSA-2021-1586: GNOME security, bug fix, and enhancement update (MODERATE)

suse-cvrf
больше 4 лет назад

Security update for webkit2gtk3

suse-cvrf
больше 4 лет назад

Security update for webkit2gtk3

suse-cvrf
больше 4 лет назад

Security update for webkit2gtk3

suse-cvrf
больше 4 лет назад

Security update for webkit2gtk3