FEDORA-2021-3de956ceee created by catanzaro 2 months ago for Fedora 33
stable

Update to WebKitGTK 2.32.3.

WebKitGTK 2.32.2 changes:

  • Improve calculation of initial WebKitWebView size.
  • Fix kinetic scrolling on touchpad with async scrolling off.
  • Fix a crash on empty drag operation in X11.
  • Fix rendering on HiDPI 4k screen and scaling.
  • Handle null native surface for surfaceless rendering.
  • Fix several crashes and rendering issues.
  • Security fixes: CVE-2021-30758

WebKitGTK 2.32.3 changes:

  • Properly set the cookies settings after a network process crash.
  • Fix accessibility tree after a cross site navigation with PSON enabled.
  • Ensure WebKitScriptWorld::window-object-cleared signal is always emitted.
  • Fix several crashes and rendering issues.
  • Security fixes: CVE-2021-21775, CVE-2021-21779, CVE-2021-30663, CVE-2021-30665, CVE-2021-30689, CVE-2021-30720, CVE-2021-30734, CVE-2021-30744, CVE-2021-30749, CVE-2021-30758, CVE-2021-30795, CVE-2021-30797, CVE-2021-30799

How to install

sudo dnf upgrade --advisory=FEDORA-2021-3de956ceee

This update has been submitted for testing by catanzaro.

2 months ago

This update's test gating status has been changed to 'failed'.

2 months ago

This update's test gating status has been changed to 'waiting'.

2 months ago

This update has obsoleted webkit2gtk3-2.32.2-1.fc33, and has inherited its bugs and notes.

2 months ago

This update's test gating status has been changed to 'failed'.

2 months ago

This update's test gating status has been changed to 'passed'.

2 months ago

This update has been pushed to testing.

2 months ago

catanzaro edited this update.

2 months ago

catanzaro edited this update.

2 months ago

catanzaro edited this update.

2 months ago

This update's test gating status has been changed to 'failed'.

2 months ago

This update's test gating status has been changed to 'passed'.

2 months ago

This update has been submitted for stable by bodhi.

2 months ago

This update has been pushed to stable.

a month ago

Please login to add feedback.

Metadata
Type
security
Severity
medium
Karma
0
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
14 days
Dates
submitted
2 months ago
in testing
2 months ago
in stable
a month ago
modified
2 months ago
BZ#1986864 CVE-2021-21775 webkit2gtk3: webkitgtk: A use-after-free vulnerability exists in the way certain events are processed for ImageLoader objects of WebKit. [fedora-all]
0
0
BZ#1986867 CVE-2021-21779 webkit2gtk3: webkitgtk: A use-after-free vulnerability exists in the way that WebKit GraphicsContext handles certain events. [fedora-all]
0
0
BZ#1986873 CVE-2021-30663 webkit2gtk3: webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution. [fedora-all]
0
0
BZ#1986876 CVE-2021-30665 webkit2gtk3: webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution. [fedora-all]
0
0
BZ#1986882 CVE-2021-30689 webkit2gtk3: webkitgtk: Processing maliciously crafted web content may lead to universal cross site scripting. [fedora-all]
0
0
BZ#1986884 CVE-2021-30720 webkit2gtk3: webkitgtk: A malicious website may be able to access restricted ports on arbitrary servers. [fedora-all]
0
0
BZ#1986887 CVE-2021-30734 webkit2gtk3: webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution [fedora-all]
0
0
BZ#1986889 CVE-2021-30744 webkit2gtk3: webkitgtk: Processing maliciously crafted web content may lead to universal cross site scripting. [fedora-all]
0
0
BZ#1986891 CVE-2021-30749 webkit2gtk3: webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution. [fedora-all]
0
0
BZ#1986893 CVE-2021-30758 webkit2gtk3: webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution. [fedora-all]
0
0
BZ#1986901 CVE-2021-30795 webkit2gtk3: webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution. [fedora-all]
0
0
BZ#1986904 CVE-2021-30797 webkit2gtk3: webkitgtk: Processing maliciously crafted web content may lead to code execution [fedora-all]
0
0
BZ#1986908 CVE-2021-30799 webkit2gtk3: webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution. [fedora-all]
0
0

Automated Test Results