Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Mageia: MGASA-2022-0346 Moderate: Webkit2 Buffer Overflow Threat

mageia
Calendar Grey September 26, 2022
Dist Mageia Esm H88
Recent updates for webkit2 in Mageia address critical security vulnerabilities, including serious buffer overflows and UI deception issues. Explore more details on the improvements
A buffer overflow issue which may lead to arbitrary code execution was addressed with improved memory handling

Summary

A buffer overflow issue which may lead to arbitrary code execution was addressed with improved memory handling. (CVE-2022-32886)
Visiting a website that frames malicious content may lead to UI spoofing. he issue was addressed with improved UI handling. (CVE-2022-32891)
A buffer overflow issue which may lead to arbitrary code execution was addressed with improved memory handling. (CVE-2022-32912)

References

- https://bugs.mageia.org/show_bug.cgi?id=30866

- https://webkitgtk.org/security/WSA-2022-0009.html

- https://webkitgtk.org/2022/09/16/webkitgtk2.36.8-released.html

- https://www.cve.org/CVERecord?id=CVE-2022-32886

- https://www.cve.org/CVERecord?id=CVE-2022-32891

- https://www.cve.org/CVERecord?id=CVE-2022-32912

Resolution

SRPMS

- 8/core/webkit2-2.36.8-1.mga8

Publication date: 26 Sep 2022
URL: https://advisories.mageia.org/MGASA-2022-0346.html
Type: security
CVE: CVE-2022-32886, CVE-2022-32891, CVE-2022-32912

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here