From 6c98e30895374eb197e0bbe54787501361bbc96b Mon Sep 17 00:00:00 2001 From: GLSAMaker Date: Fri, 5 Jul 2024 07:33:55 +0000 Subject: [ GLSA 202407-13 ] WebKitGTK+: Multiple Vulnerabilities Bug: https://bugs.gentoo.org/923851 Bug: https://bugs.gentoo.org/930116 Signed-off-by: GLSAMaker Signed-off-by: Hans de Graaff --- glsa-202407-13.xml | 64 ++++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 64 insertions(+) create mode 100644 glsa-202407-13.xml diff --git a/glsa-202407-13.xml b/glsa-202407-13.xml new file mode 100644 index 00000000..d988629f --- /dev/null +++ b/glsa-202407-13.xml @@ -0,0 +1,64 @@ + + + + WebKitGTK+: Multiple Vulnerabilities + Multiple vulnerabilities have been discovered in WebKitGTK+, the worst of which could lead to arbitrary code execution + webkit-gtk + 2024-07-05 + 2024-07-05 + 923851 + 930116 + local and remote + + + 2.44.0 + 2.44.0 + 2.44.0 + 2.44.0 + 2.44.0 + 2.44.0 + + + +

WebKitGTK+ is a full-featured port of the WebKit rendering engine, suitable for projects requiring any kind of web integration, from hybrid HTML/CSS applications to full-fledged web browsers.

+
+ +

Multiple vulnerabilities have been discovered in WebKitGTK+. Please review the CVE identifiers referenced below for details.

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All WebKitGTK+ users should upgrade to the latest version (depending on the installed slots):

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=net-libs/webkit-gtk-2.44.0:4" + # emerge --ask --oneshot --verbose ">=net-libs/webkit-gtk-2.44.0:4.1" + # emerge --ask --oneshot --verbose ">=net-libs/webkit-gtk-2.44.0:6" + +
+ + CVE-2014-1745 + CVE-2023-40414 + CVE-2023-42833 + CVE-2023-42843 + CVE-2023-42950 + CVE-2023-42956 + CVE-2024-23206 + CVE-2024-23213 + CVE-2024-23222 + CVE-2024-23252 + CVE-2024-23254 + CVE-2024-23263 + CVE-2024-23280 + CVE-2024-23284 + WSA-2024-0001 + WSA-2024-0002 + + graaff + graaff +
\ No newline at end of file -- cgit v1.2.3-65-gdbad