RHSA-2025:14434: Important: webkit2gtk3 security update
Important: webkit2gtk3 security update
Other sources
WebKitGTK is the port of the portable web rendering engine WebKit to the GTK platform.Security Fix(es): angle: insufficient input validation can cause undefined behavior (CVE-2025-6558) webkitgtk: A download?s origin may be incorrectly associated (CVE-2025-43240) webkitgtk: Processing maliciously crafted web content may lead to memory corruption (CVE-2025-31273) webkitgtk: Processing maliciously crafted web content may lead to memory corruption (CVE-2025-31278) webkitgtk: Processing web content may lead to a denial-of-service (CVE-2025-43211) webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash (CVE-2025-43212) webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash (CVE-2025-43216) webkitgtk: Processing maliciously crafted web content may disclose sensitive user information (CVE-2025-43227) webkitgtk: Processing maliciously crafted web content may disclose internal states of the app (CVE-2025-43265) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:14434?
The severity of RHSA-2025:14434 is categorized as Important.
How do I fix RHSA-2025:14434?
To fix RHSA-2025:14434, you should update the webkit2gtk3 package to version 2.48.5-1.el8_8.
Which products are affected by RHSA-2025:14434?
RHSA-2025:14434 affects various versions of Red Hat Enterprise Linux, including Server and Update Services for SAP Solutions.
What vulnerabilities are addressed in RHSA-2025:14434?
RHSA-2025:14434 addresses a security vulnerability related to insufficient input validation leading to undefined behavior, identified as CVE-2025-6558.
Is there any additional information available for RHSA-2025:14434?
For more details on RHSA-2025:14434, refer to the official Red Hat advisory documentation.