CVE-2022-42826
Francisco Alonso discovered that processing maliciously crafted
web content may lead to arbitrary code execution.
CVE-2023-23517
YeongHyeon Choi, Hyeon Park, SeOk JEON, YoungSung Ahn, JunSeo Bae
and Dohyun Lee discovered that processing maliciously crafted web
content may lead to arbitrary code execution.
CVE-2023-23518
YeongHyeon Choi, Hyeon Park, SeOk JEON, YoungSung Ahn, JunSeo Bae
and Dohyun Lee discovered that processing maliciously crafted web
content may lead to arbitrary code execution.
For Debian 10 buster, these problems have been fixed in version
2.38.4-2~deb10u1.
We recommend that you upgrade your webkit2gtk packages.
For the detailed security status of webkit2gtk please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/webkit2gtk
Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
Get the latest Linux and open source security news straight to your inbox.