Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

Mageia 7: 2020-0067 Critical: Webkit2 Code Execution Risks

mageia
Calendar Grey January 28, 2020
Dist Mageia Esm H88
Latest updates for webkit2 address urgent security vulnerabilities in Mageia, mitigating potential code execution threats.
Updated webkit2 packages fix security vulnerabilities: Processing maliciously crafted web content may lead to arbitrary code execution (CVE-2019-8835, CVE-2019-8844, CVE-2019-8846...

Summary

Updated webkit2 packages fix security vulnerabilities:
Processing maliciously crafted web content may lead to arbitrary code execution (CVE-2019-8835, CVE-2019-8844, CVE-2019-8846).
For other fixes in this update, see the referenced release notes.

References

- https://bugs.mageia.org/show_bug.cgi?id=26127

- https://webkitgtk.org/security/WSA-2020-0001.html

- https://www.openwall.com/lists/oss-security/2020/01/23/2

- https://webkitgtk.org/2020/01/22/webkitgtk2.26.3-released.html

- https://www.cve.org/CVERecord?id=CVE-2019-8835

- https://www.cve.org/CVERecord?id=CVE-2019-8844

- https://www.cve.org/CVERecord?id=CVE-2019-8846

Resolution

SRPMS

- 7/core/webkit2-2.26.3-1.mga7

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 28 Jan 2020
URL: https://advisories.mageia.org/MGASA-2020-0067.html
Type: security
CVE: CVE-2019-8835, CVE-2019-8844, CVE-2019-8846

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here