[CLSA-2025:1762362132] webkit2gtk3: Fix of 4 CVEs
Type:
security
Severity:
Important
Release date:
2025-11-05 17:02:16 UTC
Description:
- Update to 2.48.7. The following CVEs were fixed: - CVE-2025-43272: fix processing maliciously crafted web content which may lead to an unexpected process/Safari crash - CVE-2025-43342: fix processing maliciously crafted web content which may lead to an unexpected process crash - CVE-2025-43356: fix where a website may access sensor information without user consent - CVE-2025-43368: fix processing maliciously crafted web content which may lead to an unexpected crash
Updated packages:
  • webkit2gtk3-2.48.7-1.el9.tuxcare.els1.x86_64.rpm
    sha:6ce32fb0479034789b965b8a935c20e6ca5e3d7805ecbee92efb61ce7bc882a3
  • webkit2gtk3-devel-2.48.7-1.el9.tuxcare.els1.x86_64.rpm
    sha:1fc91875d8610c994178e94f81a48664314b9e50b5d8c7dc2347285214b1c131
  • webkit2gtk3-jsc-2.48.7-1.el9.tuxcare.els1.x86_64.rpm
    sha:1464aa7069881fbb43a7db476ca37cf6d5e43ba87aafef076a77f9f36700251a
  • webkit2gtk3-jsc-devel-2.48.7-1.el9.tuxcare.els1.x86_64.rpm
    sha:0d1f2a4607be71680b3889445e3b19463f0496730bd23d00d02eda8d814952b4
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.