GLSA Advocate
Joined: 12 May 2004 Posts: 2663
|
Posted: Mon Jul 27, 2020 9:26 am Post subject: [ GLSA 202007-11 ] WebKitGTK+ |
|
|
Gentoo Linux Security Advisory
Title: WebKitGTK+: Multiple vulnerabilities (GLSA 202007-11)
Severity: normal
Exploitable: remote
Date: 2020-07-26
Bug(s): #732104
ID: 202007-11
Synopsis
Multiple vulnerabilities have been found in WebKitGTK+, the worst
of which could result in the arbitrary execution of code.
Background
WebKitGTK+ is a full-featured port of the WebKit rendering engine,
suitable for projects requiring any kind of web integration, from hybrid
HTML/CSS applications to full-fledged web browsers.
Affected Packages
Package: net-libs/webkit-gtk
Vulnerable: < 2.28.3
Unaffected: >= 2.28.3
Architectures: All supported architectures
Description
Multiple vulnerabilities have been discovered in WebKitGTK+. Please
review the CVE identifiers referenced below for details.
Impact
Please review the referenced CVE identifiers for details.
Workaround
There is no known workaround at this time.
Resolution
All WebKitGTK+ users should upgrade to the latest version: Code: | # emerge --sync
# emerge --ask --oneshot --verbose ">=net-libs/webkit-gtk-2.28.3"
|
References
CVE-2020-13753
CVE-2020-9802
CVE-2020-9803
CVE-2020-9805
CVE-2020-9806
CVE-2020-9807
CVE-2020-9843
CVE-2020-9850 |
|