ALAS2-2023-2177

Related Vulnerabilities: CVE-2023-37450  

A vulnerability was found in webkitgtk. This issue occurs when processing web content, which may lead to arbitrary code execution. (CVE-2023-37450)

ALAS2-2023-2177


Amazon Linux 2 Security Advisory: ALAS-2023-2177
Advisory Release Date: 2023-08-03 18:09 Pacific
Advisory Updated Date: 2023-08-08 22:03 Pacific
Severity: Important

Issue Overview:

A vulnerability was found in webkitgtk. This issue occurs when processing web content, which may lead to arbitrary code execution. (CVE-2023-37450)


Affected Packages:

webkitgtk4


Issue Correction:
Run yum update webkitgtk4 to update your system.

New Packages:
aarch64:
    webkitgtk4-2.38.5-3.amzn2.0.3.aarch64
    webkitgtk4-devel-2.38.5-3.amzn2.0.3.aarch64
    webkitgtk4-jsc-2.38.5-3.amzn2.0.3.aarch64
    webkitgtk4-jsc-devel-2.38.5-3.amzn2.0.3.aarch64
    webkitgtk4-debuginfo-2.38.5-3.amzn2.0.3.aarch64

i686:
    webkitgtk4-2.38.5-3.amzn2.0.3.i686
    webkitgtk4-devel-2.38.5-3.amzn2.0.3.i686
    webkitgtk4-jsc-2.38.5-3.amzn2.0.3.i686
    webkitgtk4-jsc-devel-2.38.5-3.amzn2.0.3.i686
    webkitgtk4-debuginfo-2.38.5-3.amzn2.0.3.i686

src:
    webkitgtk4-2.38.5-3.amzn2.0.3.src

x86_64:
    webkitgtk4-2.38.5-3.amzn2.0.3.x86_64
    webkitgtk4-devel-2.38.5-3.amzn2.0.3.x86_64
    webkitgtk4-jsc-2.38.5-3.amzn2.0.3.x86_64
    webkitgtk4-jsc-devel-2.38.5-3.amzn2.0.3.x86_64
    webkitgtk4-debuginfo-2.38.5-3.amzn2.0.3.x86_64