[CLSA-2025:1756751564] webkit2gtk3: Fix of 18 CVEs
Type:
security
Severity:
Important
Release date:
2025-09-15 07:50:41 UTC
Description:
- Update to 2.48.5. The following CVEs were fixed: - CVE-2025-6558: fix processing maliciously crafted web content which may lead to an unexpected Safari crash - CVE-2025-31273: fix processing maliciously crafted web content which may lead to memory corruption - CVE-2025-31278: fix processing maliciously crafted web content which may lead to memory corruption - CVE-2025-43212: fix processing maliciously crafted web content which may lead to an unexpected Safari crash - CVE-2025-43216: fix processing maliciously crafted web content which may lead to an unexpected Safari crash - CVE-2025-43228: fix issue with visiting a malicious website which may lead to address bar spoofing - CVE-2025-24189: fix processing maliciously crafted web content which may lead to memory corruption - CVE-2025-31205: fix issue with a malicious website which may exfiltrate data cross-origin - CVE-2025-24208: fix loading a malicious iframe which may lead to a cross-site scripting attack - CVE-2024-54551: fix processing web content which may lead to a denial-of-service - CVE-2024-44192: fix processing maliciously crafted web content which may lead to an unexpected process crash - CVE-2024-54467: fix issue with a malicious website which may exfiltrate data cross-origin - CVE-2025-24162: fix processing maliciously crafted web content which may lead to an unexpected process crash - CVE-2024-54502: fix processing maliciously crafted web content which may lead to an unexpected process crash - CVE-2024-44244: fix processing maliciously crafted web content which may lead to an unexpected process crash - CVE-2024-44185: fix processing maliciously crafted web content which may lead to an unexpected process crash - CVE-2024-44187: fix issue wit a malicious website may exfiltrate data cross-origin - CVE-2024-40866: fix issue with visiting a malicious website which may lead to address bar spoofing
Updated packages:
  • webkit2gtk3-2.48.5-1.el9.tuxcare.els1.x86_64.rpm
    sha:4a8658d3500e94650f859656764f5ad85a82822bfe4f720c7d8c66811144cc80
  • webkit2gtk3-devel-2.48.5-1.el9.tuxcare.els1.x86_64.rpm
    sha:a8cd4e26aa73f9072cc633a28e162a9d8e32a017fe9f86cbed8ea829c3d85383
  • webkit2gtk3-jsc-2.48.5-1.el9.tuxcare.els1.x86_64.rpm
    sha:1f8aa84579fa5ecc50aa06b13388823fa9720fe9c6c96935be878afac7f972bf
  • webkit2gtk3-jsc-devel-2.48.5-1.el9.tuxcare.els1.x86_64.rpm
    sha:a4a3c10abc147ba1a25654a81ea275cdd06bf88eb3be44aaec445185b9fedd70
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.