Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 442
Alerts This Week
Warning Icon 1 442

openSUSE Webkit2gtk3 Important Security Update 2026-2378-1

suse
Calendar Grey June 11, 2026
Scroller Suse
Security update for webkit2gtk3 resolves 16 vulnerabilities in openSUSE, ensuring safer web content handling. Install now!
An update that solves 16 vulnerabilities can now be installed.

Summary

## This update for webkit2gtk3 fixes the following issues Update to version 2.52.4: * CVE-2026-28847: processing maliciously crafted web content may lead to an unexpected process crash or arbitrary code execution due to a heap buffer overflow (bsc#1267506). * CVE-2026-28883: processing maliciously crafted web content may lead to an unexpected process crash due to a use-after- free issue (bsc#1267507). * CVE-2026-28901: processing maliciously crafted web content may lead to an unexpected process crash due to improper memory handling (bsc#1267508). * CVE-2026-28902: processing maliciously crafted web content may lead to an unexpected process crash due to improper memory handling (bsc#1267509). * CVE-2026-28903: processing maliciously crafted web content may lead to an

References

* bsc#1267506

* bsc#1267507

* bsc#1267508

* bsc#1267509

* bsc#1267510

* bsc#1267511

* bsc#1267512

* bsc#1267513

* bsc#1267514

* bsc#1267515

* bsc#1267516

* bsc#1267517

* bsc#1267518

* bsc#1267519

* bsc#1267520

* bsc#1267521

Cross-

* CVE-2026-28847

* CVE-2026-28883

* CVE-2026-28901

* CVE-2026-28902

* CVE-2026-28903

* CVE-2026-28904

* CVE-2026-28905

* CVE-2026-28907

* CVE-2026-28942

* CVE-2026-28946

* CVE-2026-28947

* CVE-2026-28953

* CVE-2026-28955

* CVE-2026-28958

* CVE-2026-43658

* CVE-2026-43660

CVSS scores:

* CVE-2026-28847 ( SUSE ): 8.7

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

* CVE-2026-28847 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

* CVE-2026-28847 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

* CVE-2026-28883 ( SUSE ): 7.7

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2026:2378-1
Release Date: 2026-06-11T16:10:30Z
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.