Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2025:3974

Опубликовано: 29 июл. 2025
Источник: rocky
Оценка: Important

Описание

Important: webkit2gtk3 security update

WebKitGTK is the port of the portable web rendering engine WebKit to the GTK platform.

Security Fix(es):

  • webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash (CVE-2024-44192)

  • webkitgtk: A malicious website may exfiltrate data cross-origin (CVE-2024-54467)

  • webkitgtk: Processing web content may lead to a denial-of-service (CVE-2024-54551)

  • webkitgtk: Loading a malicious iframe may lead to a cross-site scripting attack (CVE-2025-24208)

  • webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash (CVE-2025-24209)

  • webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash (CVE-2025-24216)

  • webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash (CVE-2025-30427)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

Связанные уязвимости

oracle-oval
3 месяца назад

ELSA-2025-7387: webkit2gtk3 security update (IMPORTANT)

oracle-oval
4 месяца назад

ELSA-2025-3974: webkit2gtk3 security update (IMPORTANT)

oracle-oval
4 месяца назад

ELSA-2025-3713: webkit2gtk3 security update (IMPORTANT)

suse-cvrf
4 месяца назад

Security update for webkit2gtk3

suse-cvrf
4 месяца назад

Security update for webkit2gtk3