webkit2gtk3-2.38.5-1.el8.5.ML.1
エラータID: AXSA:2023-6246:16
リリース日:
2023/07/19 Wednesday - 09:23
題名:
webkit2gtk3-2.38.5-1.el8.5.ML.1
影響のあるチャネル:
Asianux Server 8 for x86_64
Severity:
High
Description:
以下項目について対処しました。
[Security Fix]
- WebKitGTK には、メモリ破壊の問題があるため、リモートの攻撃者
により、細工された Web コンテンツを介して、任意のコードの実行を
可能とする脆弱性が存在します。(CVE-2023-32435)
- WebKitGTK には、データ型の取り違えの問題があるため、リモート
の攻撃者により、細工された Web コンテンツを介して、任意のコード
の実行を可能とする脆弱性が存在します。(CVE-2023-32439)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2023-32435
A memory corruption issue was addressed with improved state management. This issue is fixed in Safari 16.4, iOS 16.4 and iPadOS 16.4, macOS Ventura 13.3, iOS 15.7.7 and iPadOS 15.7.7. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.7.
A memory corruption issue was addressed with improved state management. This issue is fixed in Safari 16.4, iOS 16.4 and iPadOS 16.4, macOS Ventura 13.3, iOS 15.7.7 and iPadOS 15.7.7. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.7.
CVE-2023-32439
A type confusion issue was addressed with improved checks. This issue is fixed in iOS 16.5.1 and iPadOS 16.5.1, Safari 16.5.1, macOS Ventura 13.4.1, iOS 15.7.7 and iPadOS 15.7.7. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.
A type confusion issue was addressed with improved checks. This issue is fixed in iOS 16.5.1 and iPadOS 16.5.1, Safari 16.5.1, macOS Ventura 13.4.1, iOS 15.7.7 and iPadOS 15.7.7. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.
追加情報:
N/A
ダウンロード:
SRPMS
- webkit2gtk3-2.38.5-1.el8.5.ML.1.src.rpm
MD5: d6c5ed948a6cdfa54177ecce7842e8f9
SHA-256: e61024d91e4d600ed579be8e2c02d126568fcb2b8acb9286a63e8d50632ad7bc
Size: 31.53 MB
Asianux Server 8 for x86_64
- webkit2gtk3-2.38.5-1.el8.5.ML.1.i686.rpm
MD5: 20892df27737d5b5cc124730af2200e4
SHA-256: 93e5c8d72fcff8d67fd4e949e09bf61b9f7302eb24c6ff3d3102fc638de1d1b5
Size: 23.37 MB - webkit2gtk3-2.38.5-1.el8.5.ML.1.x86_64.rpm
MD5: 1e10dab87c7f52c7db57f582f77985dd
SHA-256: f6d853e3b1fe6b5edc709b0c6cc917c3dc2e10ccb450080634f953991106b5ae
Size: 21.39 MB - webkit2gtk3-devel-2.38.5-1.el8.5.ML.1.i686.rpm
MD5: 008c829fe114959c1a59c2d6f9c29716
SHA-256: 684c12f58a571b24b904b47783056e9c0527a1c4040233ae94804fbdc63c1dcc
Size: 296.38 kB - webkit2gtk3-devel-2.38.5-1.el8.5.ML.1.x86_64.rpm
MD5: 0cd3d06e8922adef3e5966904acef4b2
SHA-256: a4f74899a8d25699fd1ba4a54cf1ddd6e81ebdb1ffa63eb0f3e5c4c13965cb71
Size: 292.09 kB - webkit2gtk3-jsc-2.38.5-1.el8.5.ML.1.i686.rpm
MD5: 44bfdb494445e48b461a6bf4f778e1bf
SHA-256: d92ef11697a8163c4b007313b531165f9b0903a042db99e575dabe13825dba9c
Size: 3.83 MB - webkit2gtk3-jsc-2.38.5-1.el8.5.ML.1.x86_64.rpm
MD5: d52707a73d282cdafc4b5cce89bc7404
SHA-256: 3b0e533df184213c16d91e9f5124bc6e2a603aa5122cf34bca01007e4bc768a8
Size: 3.69 MB - webkit2gtk3-jsc-devel-2.38.5-1.el8.5.ML.1.i686.rpm
MD5: f9b799aa4dfc0be1cff1037288cfd882
SHA-256: 583f41d147b37e6da143be14cdc49f2c5223ea6870d9673cd522dcf237cbbb08
Size: 165.80 kB - webkit2gtk3-jsc-devel-2.38.5-1.el8.5.ML.1.x86_64.rpm
MD5: fb1e420acdce8c6454c0c722fadb7fa3
SHA-256: e95ed98f4fcfa4d6fa0403dfa6bc4050611dfb24ae11e57446c00d59f9c9bb29
Size: 152.06 kB