GLSA Advocate
Joined: 12 May 2004 Posts: 2663
|
Posted: Fri Jul 31, 2020 5:26 pm Post subject: [ GLSA 202007-61 ] WebKitGTK+ |
|
|
Gentoo Linux Security Advisory
Title: WebKitGTK+: Multiple vulnerabilities (GLSA 202007-61)
Severity: normal
Exploitable: remote
Date: 2020-07-31
Bug(s): #734584
ID: 202007-61
Synopsis
Multiple vulnerabilities have been found in WebKitGTK+, the worst
of which could result in the arbitrary execution of code.
Background
WebKitGTK+ is a full-featured port of the WebKit rendering engine,
suitable for projects requiring any kind of web integration, from hybrid
HTML/CSS applications to full-fledged web browsers.
Affected Packages
Package: net-libs/webkit-gtk
Vulnerable: < 2.28.4
Unaffected: >= 2.28.4
Architectures: All supported architectures
Description
Multiple vulnerabilities have been discovered in WebKitGTK+. Please
review the CVE identifiers referenced below for details.
Impact
Please review the referenced CVE identifiers for details.
Workaround
There is no known workaround at this time.
Resolution
All WebKitGTK+ users should upgrade to the latest version: Code: | # emerge --sync
# emerge --ask --oneshot --verbose ">=net-libs/webkit-gtk-2.28.4"
|
References
CVE-2020-9862
CVE-2020-9893
CVE-2020-9894
CVE-2020-9895
CVE-2020-9915
CVE-2020-9925 |
|