USN-4422-1: WebKitGTK+ vulnerabilities
A large number of security issues were discovered in the WebKitGTK Web and JavaScript engines. If a user were tricked into viewing a malicious website, a remote attacker could exploit a variety of issues related to web browser security, including cross-site scripting attacks, denial of service attacks, and arbitrary code execution.
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the vulnerability ID for this advisory?
The vulnerability ID for this advisory is USN-4422-1.
What software is affected by this vulnerability?
The libjavascriptcoregtk-4.0-18 and libwebkit2gtk-4.0-37 packages on Ubuntu 20.04, 19.10, and 18.04 are affected.
What is the remedy for this vulnerability?
The recommended remedy is to upgrade to version 2.28.3-0ubuntu0.20.04.1 of the affected packages.
Are there any known exploits for this vulnerability?
Yes, there are known exploits for this vulnerability.
Where can I find more information about this vulnerability?
More information about this vulnerability can be found on the Ubuntu security website.