The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2022-26700 ryuzaki discovered that processing maliciously crafted web content may lead to code execution. CVE-2022-26709 Chijin Zhou discovered that processing maliciously crafted web content may lead to arbitrary code execution. CVE-2022-26716 SorryMybad discovered that Processing maliciously crafted web content may lead to arbitrary code execution. CVE-2022-26717 Jeonghoon Shin discovered that Processing maliciously crafted web content may lead to arbitrary code execution. CVE-2022-26719 Dongzhuo Zhao discovered that Processing maliciously crafted web content may lead to arbitrary code execution. CVE-2022-30293 Chijin Zhou discovered that processing maliciously crafted web content may lead to arbitrary code execution or to a denial of service (application crash). CVE-2022-30294 Chijin Zhou discovered that processing maliciously crafted web content may lead to arbitrary code execution or to a denial of service (application crash). For the oldstable distribution (buster), these problems have been fixed in version 2.36.3-1~deb10u1. For the stable distribution (bullseye), these problems have been fixed in version 2.36.3-1~deb11u1. We recommend that you upgrade your webkit2gtk packages. For the detailed security status of webkit2gtk please refer to its security tracker page at: https://security-tracker.debian.org/tracker/webkit2gtk
The following vulnerabilities have been discovered in the WebKitGTK web engine:
ryuzaki discovered that processing maliciously crafted web content may lead to code execution.
Chijin Zhou discovered that processing maliciously crafted web content may lead to arbitrary code execution.
SorryMybad discovered that Processing maliciously crafted web content may lead to arbitrary code execution.
Jeonghoon Shin discovered that Processing maliciously crafted web content may lead to arbitrary code execution.
Dongzhuo Zhao discovered that Processing maliciously crafted web content may lead to arbitrary code execution.
Chijin Zhou discovered that processing maliciously crafted web content may lead to arbitrary code execution or to a denial of service (application crash).
Chijin Zhou discovered that processing maliciously crafted web content may lead to arbitrary code execution or to a denial of service (application crash).
For the oldstable distribution (buster), these problems have been fixed in version 2.36.3-1~deb10u1.
For the stable distribution (bullseye), these problems have been fixed in version 2.36.3-1~deb11u1.
We recommend that you upgrade your webkit2gtk packages.
For the detailed security status of webkit2gtk please refer to its security tracker page at: https://security-tracker.debian.org/tracker/webkit2gtk