stable

webkitgtk-2.48.5-1.fc42

FEDORA-2025-61ca72f430 created by catanzaro 10 months ago for Fedora 42

Update to 2.48.5. Changes since 2.48.3:

  • Improve emoji font selection.
  • Improve playback of multimedia streams from blob URLs.
  • Fix crash when using a WebKitWebView widget in an offscreen window.
  • Fix several crashes and rendering issues.
  • CVE-2025-31273, CVE-2025-31278, CVE-2025-43211, CVE-2025-43212, CVE-2025-43216, CVE-2025-43227, CVE-2025-43240, CVE-2025-43265, CVE-2025-6558

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2025-61ca72f430

This update has been submitted for testing by catanzaro.

10 months ago

This update's test gating status has been changed to 'waiting'.

10 months ago

This update's test gating status has been changed to 'passed'.

10 months ago
User Icon fredrik commented & provided feedback 10 months ago
karma

LGTM, no problems encountered with regular usage on Silverblue 42.20250806.0

This update has been pushed to testing.

10 months ago
User Icon nathan95 commented & provided feedback 10 months ago
karma

works for me

This update can be pushed to stable now if the maintainer wishes

10 months ago
User Icon bojan commented & provided feedback 10 months ago
karma

Works.

User Icon rai510 provided feedback 10 months ago
karma

This update has been submitted for stable by bodhi.

10 months ago

This update has been pushed to stable.

10 months ago

Please log in to add feedback.

Metadata
Type
security
Severity
medium
Karma
4
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
4
Stable by Time
14 days
Dates
submitted
10 months ago
in testing
10 months ago
in stable
10 months ago
approved
10 months ago
BZ#2386383 CVE-2025-43265 webkitgtk: Processing maliciously crafted web content may disclose internal states of the app [fedora-all]
0
0
BZ#2386384 CVE-2025-43227 webkitgtk: Processing maliciously crafted web content may disclose sensitive user information [epel-all]
0
0
BZ#2386387 CVE-2025-43216 webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash [epel-all]
0
0
BZ#2386390 CVE-2025-43212 webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash [epel-all]
0
0
BZ#2386397 CVE-2025-43211 webkitgtk: Processing web content may lead to a denial-of-service [epel-all]
0
0
BZ#2386406 CVE-2025-31278 webkitgtk: Processing maliciously crafted web content may lead to memory corruption [fedora-all]
0
0
BZ#2386409 CVE-2025-31273 webkitgtk: Processing maliciously crafted web content may lead to memory corruption [fedora-all]
0
0
BZ#2386415 CVE-2025-43240 webkitgtk: A download’s origin may be incorrectly associated [epel-all]
0
0

Automated Test Results