An update is available for webkit2gtk3. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
WebKitGTK is the port of the portable web rendering engine WebKit to the GTK platform. Security Fix(es): * webkitgtk: a use-after-free when processing maliciously crafted web content (CVE-2023-32373) * webkitgtk: an out-of-bounds read when processing malicious content (CVE-2023-28204) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
webkit2gtk3-0:2.38.5-1.el8_8.4.aarch64.rpm
webkit2gtk3-0:2.38.5-1.el8_8.4.i686.rpm
webkit2gtk3-0:2.38.5-1.el8_8.4.src.rpm
webkit2gtk3-0:2.38.5-1.el8_8.4.x86_64.rpm
webkit2gtk3-debuginfo-0:2.38.5-1.el8_8.4.aarch64.rpm
webkit2gtk3-debuginfo-0:2.38.5-1.el8_8.4.i686.rpm
webkit2gtk3-debuginfo-0:2.38.5-1.el8_8.4.x86_64.rpm
webkit2gtk3-debugsource-0:2.38.5-1.el8_8.4.aarch64.rpm
webkit2gtk3-debugsource-0:2.38.5-1.el8_8.4.i686.rpm
webkit2gtk3-debugsource-0:2.38.5-1.el8_8.4.x86_64.rpm
webkit2gtk3-devel-0:2.38.5-1.el8_8.4.aarch64.rpm
webkit2gtk3-devel-0:2.38.5-1.el8_8.4.i686.rpm
webkit2gtk3-devel-0:2.38.5-1.el8_8.4.x86_64.rpm
webkit2gtk3-devel-debuginfo-0:2.38.5-1.el8_8.4.aarch64.rpm
webkit2gtk3-devel-debuginfo-0:2.38.5-1.el8_8.4.i686.rpm
webkit2gtk3-devel-debuginfo-0:2.38.5-1.el8_8.4.x86_64.rpm
webkit2gtk3-jsc-0:2.38.5-1.el8_8.4.aarch64.rpm
webkit2gtk3-jsc-0:2.38.5-1.el8_8.4.i686.rpm
webkit2gtk3-jsc-0:2.38.5-1.el8_8.4.x86_64.rpm
webkit2gtk3-jsc-debuginfo-0:2.38.5-1.el8_8.4.aarch64.rpm
webkit2gtk3-jsc-debuginfo-0:2.38.5-1.el8_8.4.i686.rpm
webkit2gtk3-jsc-debuginfo-0:2.38.5-1.el8_8.4.x86_64.rpm
webkit2gtk3-jsc-devel-0:2.38.5-1.el8_8.4.aarch64.rpm
webkit2gtk3-jsc-devel-0:2.38.5-1.el8_8.4.i686.rpm
webkit2gtk3-jsc-devel-0:2.38.5-1.el8_8.4.x86_64.rpm
webkit2gtk3-jsc-devel-debuginfo-0:2.38.5-1.el8_8.4.aarch64.rpm
webkit2gtk3-jsc-devel-debuginfo-0:2.38.5-1.el8_8.4.i686.rpm
webkit2gtk3-jsc-devel-debuginfo-0:2.38.5-1.el8_8.4.x86_64.rpm
No References
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-28204
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-32373
https://bugzilla.redhat.com/show_bug.cgi?id=2209208
https://bugzilla.redhat.com/show_bug.cgi?id=2209214