First published: Tue Aug 15 2023(Updated: )
Several security issues were discovered in the WebKitGTK Web and JavaScript engines. If a user were tricked into viewing a malicious website, a remote attacker could exploit a variety of issues related to web browser security, including cross-site scripting attacks, denial of service attacks, and arbitrary code execution.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libjavascriptcoregtk-4.0-18 | <2.40.5-0ubuntu0.23.04.1 | 2.40.5-0ubuntu0.23.04.1 |
=23.04 | ||
All of | ||
ubuntu/libjavascriptcoregtk-4.1-0 | <2.40.5-0ubuntu0.23.04.1 | 2.40.5-0ubuntu0.23.04.1 |
=23.04 | ||
All of | ||
ubuntu/libjavascriptcoregtk-6.0-1 | <2.40.5-0ubuntu0.23.04.1 | 2.40.5-0ubuntu0.23.04.1 |
=23.04 | ||
All of | ||
ubuntu/libwebkit2gtk-4.0-37 | <2.40.5-0ubuntu0.23.04.1 | 2.40.5-0ubuntu0.23.04.1 |
=23.04 | ||
All of | ||
ubuntu/libwebkit2gtk-4.1-0 | <2.40.5-0ubuntu0.23.04.1 | 2.40.5-0ubuntu0.23.04.1 |
=23.04 | ||
All of | ||
ubuntu/libwebkitgtk-6.0-4 | <2.40.5-0ubuntu0.23.04.1 | 2.40.5-0ubuntu0.23.04.1 |
=23.04 | ||
All of | ||
ubuntu/libjavascriptcoregtk-4.0-18 | <2.40.5-0ubuntu0.22.04.1 | 2.40.5-0ubuntu0.22.04.1 |
=22.04 | ||
All of | ||
ubuntu/libjavascriptcoregtk-4.1-0 | <2.40.5-0ubuntu0.22.04.1 | 2.40.5-0ubuntu0.22.04.1 |
=22.04 | ||
All of | ||
ubuntu/libjavascriptcoregtk-6.0-1 | <2.40.5-0ubuntu0.22.04.1 | 2.40.5-0ubuntu0.22.04.1 |
=22.04 | ||
All of | ||
ubuntu/libwebkit2gtk-4.0-37 | <2.40.5-0ubuntu0.22.04.1 | 2.40.5-0ubuntu0.22.04.1 |
=22.04 | ||
All of | ||
ubuntu/libwebkit2gtk-4.1-0 | <2.40.5-0ubuntu0.22.04.1 | 2.40.5-0ubuntu0.22.04.1 |
=22.04 | ||
All of | ||
ubuntu/libwebkitgtk-6.0-4 | <2.40.5-0ubuntu0.22.04.1 | 2.40.5-0ubuntu0.22.04.1 |
=22.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)
USN-6289-1 addresses several security issues in the WebKitGTK Web and JavaScript engines, including cross-site scripting attacks, denial of service attacks, and remote code execution vulnerabilities.
The severity of USN-6289-1 is not specified.
To fix the vulnerabilities in USN-6289-1, update the affected software packages to the specified versions.
The affected software packages in USN-6289-1 are libjavascriptcoregtk-4.0-18, libjavascriptcoregtk-4.1-0, libjavascriptcoregtk-6.0-1, libwebkit2gtk-4.0-37, libwebkit2gtk-4.1-0, and libwebkitgtk-6.0-4.
You can find more information about the vulnerabilities in USN-6289-1 on the Ubuntu security website: [link](https://ubuntu.com/security/CVE-2023-38572), [link](https://ubuntu.com/security/CVE-2023-38600), [link](https://ubuntu.com/security/CVE-2023-38592).