Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora 41: 2025-3e8ed13bf0 Critical: WebKitGTK DoS Issues

fedora
Calendar Grey February 15, 2025
Dist Fedora Esm H88
WebKitGTK 2.46.6 improvements tackle display bugs and stability problems on Fedora, implementing vital upgrades and security fixes.
Update to WebKitGTK 2.46.6: Fix a crash when enabling Skia CPU rendering

Summary

WebKitGTK is the port of the WebKit web rendering engine to the

GTK platform.

Update Information:

Update to WebKitGTK 2.46.6: Fix a crash when enabling Skia CPU rendering. Fix several crashes and rendering issues. Fix CVE-2024-54543, CVE-2025-24143, CVE-2025-24150, CVE-2025-24158, CVE-2025-24162

Change Log

* Tue Feb 11 2025 Michael Catanzaro - 2.46.6-1 - Update to WebKitGTK 2.46.6

References


[ 1 ] Bug #2344951 - CVE-2024-54543 webkitgtk: Processing maliciously crafted web content may lead to memory corruption [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2344951 [ 2 ] Bug #2344953 - CVE-2025-24162 webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2344953 [ 3 ] Bug #2344964 - CVE-2025-24143 webkitgtk: A maliciously crafted webpage may be able to fingerprint the user [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2344964 [ 4 ] Bug #2344967 - CVE-2025-24150 webkitgtk: Copying a URL from Web Inspector may lead to command injection [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2344967 [ 5 ] Bug #2344969 - CVE-2025-24158 webkitgtk: Processing web content may lead to a denial-of-service [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2344969

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-3e8ed13bf0' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: webkitgtk
Product: Fedora 41
Version: 2.46.6
Release: 1.fc41
Summary: GTK web content engine library

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here