webkit2gtk-5.0

Link package | bugs open | bugs closed | Wiki | GitHub | web search
Description Web content engine for GTK
Version 2.38.2-1 [extra]

Resolved

Group Affected Fixed Severity Status Ticket
AVG-2792 2.36.4-2 2.36.5-1 Critical Fixed
AVG-2651 2.34.5-1 2.34.6-1 High Fixed
Issue Group Severity Remote Type Description
CVE-2022-32816 AVG-2792 High Yes Content spoofing
Visiting a website that frames malicious content may lead to UI spoofing.
CVE-2022-32792 AVG-2792 Critical Yes Arbitrary code execution
Processing maliciously crafted web content may lead to arbitrary code execution.
CVE-2022-22620 AVG-2651 High Yes Arbitrary code execution
A use after free vulnerability was found in WebKitGTK allowing an attacker to perform remote code execution using maliciously crafted web content.