First published: Mon Apr 14 2025(Updated: )
Several security issues were discovered in the WebKitGTK Web and JavaScript engines. If a user were tricked into viewing a malicious website, a remote attacker could exploit a variety of issues related to web browser security, including cross-site scripting attacks, denial of service attacks, and arbitrary code execution.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libjavascriptcoregtk-4.1-0 | <2.48.1-0ubuntu0.24.10.1 | 2.48.1-0ubuntu0.24.10.1 |
Ubuntu | =24.10 | |
All of | ||
ubuntu/libjavascriptcoregtk-6.0-1 | <2.48.1-0ubuntu0.24.10.1 | 2.48.1-0ubuntu0.24.10.1 |
Ubuntu | =24.10 | |
All of | ||
ubuntu/libwebkit2gtk-4.1-0 | <2.48.1-0ubuntu0.24.10.1 | 2.48.1-0ubuntu0.24.10.1 |
Ubuntu | =24.10 | |
All of | ||
ubuntu/libwebkitgtk-6.0-4 | <2.48.1-0ubuntu0.24.10.1 | 2.48.1-0ubuntu0.24.10.1 |
Ubuntu | =24.10 | |
All of | ||
ubuntu/libjavascriptcoregtk-4.1-0 | <2.48.1-0ubuntu0.24.04.1 | 2.48.1-0ubuntu0.24.04.1 |
Ubuntu | =24.04 | |
All of | ||
ubuntu/libjavascriptcoregtk-6.0-1 | <2.48.1-0ubuntu0.24.04.1 | 2.48.1-0ubuntu0.24.04.1 |
Ubuntu | =24.04 | |
All of | ||
ubuntu/libwebkit2gtk-4.1-0 | <2.48.1-0ubuntu0.24.04.1 | 2.48.1-0ubuntu0.24.04.1 |
Ubuntu | =24.04 | |
All of | ||
ubuntu/libwebkitgtk-6.0-4 | <2.48.1-0ubuntu0.24.04.1 | 2.48.1-0ubuntu0.24.04.1 |
Ubuntu | =24.04 | |
All of | ||
ubuntu/libjavascriptcoregtk-4.0-18 | <2.48.1-0ubuntu0.22.04.1 | 2.48.1-0ubuntu0.22.04.1 |
Ubuntu | =22.04 | |
All of | ||
ubuntu/libjavascriptcoregtk-4.1-0 | <2.48.1-0ubuntu0.22.04.1 | 2.48.1-0ubuntu0.22.04.1 |
Ubuntu | =22.04 | |
All of | ||
ubuntu/libjavascriptcoregtk-6.0-1 | <2.48.1-0ubuntu0.22.04.1 | 2.48.1-0ubuntu0.22.04.1 |
Ubuntu | =22.04 | |
All of | ||
ubuntu/libwebkit2gtk-4.0-37 | <2.48.1-0ubuntu0.22.04.1 | 2.48.1-0ubuntu0.22.04.1 |
Ubuntu | =22.04 | |
All of | ||
ubuntu/libwebkit2gtk-4.1-0 | <2.48.1-0ubuntu0.22.04.1 | 2.48.1-0ubuntu0.22.04.1 |
Ubuntu | =22.04 | |
All of | ||
ubuntu/libwebkitgtk-6.0-4 | <2.48.1-0ubuntu0.22.04.1 | 2.48.1-0ubuntu0.22.04.1 |
Ubuntu | =22.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)
The severity of USN-7436-1 is categorized as high due to multiple security vulnerabilities in WebKitGTK that could lead to exploitation.
To fix USN-7436-1, upgrade to the latest versions of the affected packages: libjavascriptcoregtk-4.1-0, libjavascriptcoregtk-6.0-1, libwebkit2gtk-4.1-0, libwebkitgtk-6.0-4 for Ubuntu 24.10 or the corresponding versions for earlier releases.
USN-7436-1 affects Ubuntu 22.04 and 24.04, as well as Ubuntu 24.10.
USN-7436-1 addresses vulnerabilities that include cross-site scripting and denial of service in the WebKitGTK engines.
No, it is not safe to browse the internet with the vulnerabilities present as they could allow attackers to exploit the browser security.