Home[1] Files[2] News[3] &[SERVICES_TAB] Contact[4] Add New[5]
- Debian Security Advisory 5575-1[6]
- Authored by Debian[7] | Site debian.org[8]
-
Debian Linux Security Advisory 5575-1 - The following vulnerabilities have been discovered in the WebKitGTK web engine.
- systems | linux[9], debian[10]
- advisories | CVE-2023-42916[11], CVE-2023-42917[12]
- SHA-256 |
fb2b3e50ddbe9455517494418af65058e060ac8c36d2bcce67a49bffceb3b808 - Download[13] | Favorite[14] | View[15]
Change Mirror[16] Download[17]
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
- -------------------------------------------------------------------------
Debian Security Advisory DSA-5575-1 Cette adresse e-mail est protégée contre les robots spammeurs. Vous devez activer le JavaScript pour la visualiser.
https://www.debian.org/security/ Alberto Garcia
December 11, 2023 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : webkit2gtk
CVE ID : CVE-2023-42916 CVE-2023-42917
The following vulnerabilities have been discovered in the WebKitGTK
web engine:
CVE-2023-42916
Clement Lecigne discovered that processing web content may
disclose sensitive information. Apple is aware of a report that
this issue may have been actively exploited.
CVE-2023-42917
Clement Lecigne discovered that processing web content may lead to
arbitrary code execution. Apple is aware of a report that this
issue may have been actively exploited.
For the oldstable distribution (bullseye), these problems have been fixed
in version 2.42.3-1~deb11u1.
For the stable distribution (bookworm), these problems have been fixed in
version 2.42.3-1~deb12u1.
We recommend that you upgrade your webkit2gtk packages.
For the detailed security status of webkit2gtk please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/webkit2gtk
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/
Mailing list: Cette adresse e-mail est protégée contre les robots spammeurs. Vous devez activer le JavaScript pour la visualiser.
-----BEGIN PGP SIGNATURE-----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=v8r9
-----END PGP SIGNATURE-----
File Tags
- ActiveX[23] (932)
- Advisory[24] (83,442)
- Arbitrary[25] (16,438)
- BBS[26] (2,859)
- Bypass[27] (1,803)
- CGI[28] (1,031)
- Code Execution[29] (7,429)
- Conference[30] (683)
- Cracker[31] (843)
- CSRF[32] (3,355)
- DoS[33] (24,070)
- Encryption[34] (2,372)
- Exploit[35] (52,301)
- File Inclusion[36] (4,234)
- File Upload[37] (979)
- Firewall[38] (822)
- Info Disclosure[39] (2,811)
- Intrusion Detection[40] (900)
- Java[41] (3,091)
- JavaScript[42] (881)
- Kernel[43] (6,857)
- Local[44] (14,588)
- Magazine[45] (586)
- Overflow[46] (12,872)
- Perl[47] (1,427)
- PHP[48] (5,164)
- Proof of Concept[49] (2,350)
- Protocol[50] (3,657)
- Python[51] (1,571)
- Remote[52] (31,076)
- Root[53] (3,607)
- Rootkit[54] (515)
- Ruby[55] (614)
- Scanner[56] (1,645)
- Security Tool[57] (7,930)
- Shell[58] (3,215)
- Shellcode[59] (1,216)
- Sniffer[60] (897)
- Spoof[61] (2,229)
- SQL Injection[62] (16,450)
- TCP[63] (2,419)
- Trojan[64] (687)
- UDP[65] (896)
- Virus[66] (667)
- Vulnerability[67] (32,121)
- Web[68] (9,794)
- Whitepaper[69] (3,759)
- x86[70] (966)
- XSS[71] (18,056)
- Other[72]
File Archives
- December 2023[73]
- November 2023[74]
- October 2023[75]
- September 2023[76]
- August 2023[77]
- July 2023[78]
- June 2023[79]
- May 2023[80]
- April 2023[81]
- March 2023[82]
- February 2023[83]
- January 2023[84]
- Older[85]
Systems
- AIX[86] (429)
- Apple[87] (2,037)
- BSD[88] (375)
- CentOS[89] (57)
- Cisco[90] (1,926)
- Debian[91] (6,917)
- Fedora[92] (1,692)
- FreeBSD[93] (1,246)
- Gentoo[94] (4,379)
- HPUX[95] (880)
- iOS[96] (363)
- iPhone[97] (108)
- IRIX[98] (220)
- Juniper[99] (69)
- Linux[100] (47,918)
- Mac OS X[101] (691)
- Mandriva[102] (3,105)
- NetBSD[103] (256)
- OpenBSD[104] (486)
- RedHat[105] (14,664)
- Slackware[106] (941)
- Solaris[107] (1,611)
- SUSE[108] (1,444)
- Ubuntu[109] (9,161)
- UNIX[110] (9,341)
- UnixWare[111] (187)
- Windows[112] (6,611)
- Other[113]
- Services
- Security Services[124]
- Hosting By
- Rokasec[125]
Read more https://packetstormsecurity.com/files/176156/dsa-5575-1.txt


