USN-7279-1: WebKitGTK vulnerabilities
Several security issues were discovered in the WebKitGTK Web and JavaScript engines. If a user were tricked into viewing a malicious website, a remote attacker could exploit a variety of issues related to web browser security, including cross-site scripting attacks, denial of service attacks, and arbitrary code execution.
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the severity of USN-7279-1?
USN-7279-1 addresses multiple security vulnerabilities in the WebKitGTK web and JavaScript engines that could potentially lead to cross-site scripting attacks and denial of service.
How do I fix USN-7279-1?
To fix USN-7279-1, update the affected packages to the recommended versions listed in the security notice.
What packages are affected by USN-7279-1?
The affected packages include libjavascriptcoregtk-4.1-0, libjavascriptcoregtk-6.0-1, libwebkit2gtk-4.1-0, and libwebkitgtk-6.0-4 on specific versions of Ubuntu.
Who is impacted by the vulnerabilities in USN-7279-1?
Users of Ubuntu 22.04 and 24.04 with the affected WebKitGTK and JavaScript packages are at risk if they do not update.
What are the potential exploits for USN-7279-1?
The vulnerabilities in USN-7279-1 could allow remote attackers to perform cross-site scripting attacks, leading to data theft or service disruption.