Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Debian 11: WebKitGTK Critical Denial of Service DLA-4276-1 CVE-2025-6558

debian lts
Calendar Grey August 20, 2025
Dist Debian Esm H88
Critical denial of service vulnerability in WebKitGTK affecting Debian 11. Immediate upgrades are recommended for security purposes.
The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2025-6558

Summary

CVE-2025-6558

Clement Lecigne and Vlad Stolyarov discovered that processing
maliciously crafted web content may lead to an unexpected crash.

CVE-2025-31273

Yuhao Hu, Yan Kang, Chenggang Wu, and Xiaojie Wei discovered that
processing maliciously crafted web content may lead to memory
corruption.

CVE-2025-31278

Yuhao Hu, Yan Kang, Chenggang Wu, and Xiaojie Wei discovered that
processing maliciously crafted web content may lead to memory
corruption.

CVE-2025-43211

Yuhao Hu, Yan Kang, Chenggang Wu, and Xiaojie Wei discovered that
processing web content may lead to a denial-of-service.

CVE-2025-43212

Nan Wang and Ziling Chen discovered that processing maliciously
crafted web content may lead to an unexpected crash.

CVE-2025-43216

Ignacio Sanmillan discovered that processing maliciously crafted
web content may lead to an unexpected crash.

CVE-2025-43227

Gilad Moav discovered that processing maliciously crafted web

Read the Full Advisory


Severity
critical
Lowest
Low
Medium
High
Critical

Package: webkit2gtk
Version: 2.48.5-1~deb11u1
CVE ID: CVE-2025-6558 CVE-2025-31273 CVE-2025-31278 CVE-2025-43211

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here