Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 492
Alerts This Week
Warning Icon 1 492

Rocky Linux 9 RLSA-2024:8180 critical: webkit2gtk3 remote code execution

rocky
Calendar Grey October 25, 2024
Scroller Rockylinux
An important update for webkit2gtk3 has been issued for Rocky Linux, addressing critical vulnerabilities such as remote code execution risks.
Important: webkit2gtk3 security update

Summary

An update is available for webkit2gtk3. This update affects Rocky Linux 9. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RPMs

webkit2gtk3-0:2.46.1-2.el9_4.aarch64.rpm

webkit2gtk3-0:2.46.1-2.el9_4.i686.rpm

webkit2gtk3-0:2.46.1-2.el9_4.ppc64le.rpm

webkit2gtk3-0:2.46.1-2.el9_4.s390x.rpm

webkit2gtk3-0:2.46.1-2.el9_4.src.rpm

webkit2gtk3-0:2.46.1-2.el9_4.x86_64.rpm

webkit2gtk3-debuginfo-0:2.46.1-2.el9_4.aarch64.rpm

webkit2gtk3-debuginfo-0:2.46.1-2.el9_4.ppc64le.rpm

webkit2gtk3-debuginfo-0:2.46.1-2.el9_4.s390x.rpm

webkit2gtk3-debuginfo-0:2.46.1-2.el9_4.x86_64.rpm

webkit2gtk3-debugsource-0:2.46.1-2.el9_4.aarch64.rpm

webkit2gtk3-debugsource-0:2.46.1-2.el9_4.ppc64le.rpm

webkit2gtk3-debugsource-0:2.46.1-2.el9_4.s390x.rpm

webkit2gtk3-debugsource-0:2.46.1-2.el9_4.x86_64.rpm

webkit2gtk3-devel-0:2.46.1-2.el9_4.aarch64.rpm

webkit2gtk3-devel-0:2.46.1-2.el9_4.i686.rpm

webkit2gtk3-devel-0:2.46.1-2.el9_4.ppc64le.rpm

webkit2gtk3-devel-0:2.46.1-2.el9_4.s390x.rpm

webkit2gtk3-devel-0:2.46.1-2.el9_4.x86_64.rpm

webkit2gtk3-devel-debuginfo-0:2.46.1-2.el9_4.aarch64.rpm

webkit2gtk3-devel-debuginfo-0:2.46.1-2.el9_4.ppc64le.rpm

Read the Full Advisory

References

No references

CVES

https://www.cve.org/CVERecord?id=CVE-2024-23271

https://www.cve.org/CVERecord?id=CVE-2024-27820

https://www.cve.org/CVERecord?id=CVE-2024-27838

https://www.cve.org/CVERecord?id=CVE-2024-27851

https://www.cve.org/CVERecord?id=CVE-2024-40776

https://www.cve.org/CVERecord?id=CVE-2024-40779

https://www.cve.org/CVERecord?id=CVE-2024-40780

https://www.cve.org/CVERecord?id=CVE-2024-40782

https://www.cve.org/CVERecord?id=CVE-2024-40789

https://www.cve.org/CVERecord?id=CVE-2024-40866

https://www.cve.org/CVERecord?id=CVE-2024-44187

Severity
critical
Lowest
Low
Medium
High
Critical

Name: RLSA-2024:8180
Affected Products: Rocky Linux 9

Fixes

https://bugzilla.redhat.com/show_bug.cgi?id=2301841

https://bugzilla.redhat.com/show_bug.cgi?id=2302067

https://bugzilla.redhat.com/show_bug.cgi?id=2302069

https://bugzilla.redhat.com/show_bug.cgi?id=2302070

https://bugzilla.redhat.com/show_bug.cgi?id=2302071

https://bugzilla.redhat.com/show_bug.cgi?id=2312724

https://bugzilla.redhat.com/show_bug.cgi?id=2314696

https://bugzilla.redhat.com/show_bug.cgi?id=2314698

https://bugzilla.redhat.com/show_bug.cgi?id=2314702

https://bugzilla.redhat.com/show_bug.cgi?id=2314704

https://bugzilla.redhat.com/show_bug.cgi?id=2314706


Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.