]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
webkitgtk: fix CVE-2023-32439
authorYogita Urade <yogita.urade@windriver.com>
Wed, 27 Sep 2023 05:14:15 +0000 (05:14 +0000)
committerSteve Sakoman <steve@sakoman.com>
Wed, 27 Sep 2023 14:09:05 +0000 (04:09 -1000)
commitcdbc3c1548299eb78aeebb94909224eca8410158
tree5e038c5190cd8148a0c017347c0816215562ce66
parent7a40082e4e080eaf5f88bd24f7169b7731028529
webkitgtk: fix CVE-2023-32439

A type confusion issue was addressed with improved checks.
This issue is fixed in iOS 16.5.1 and iPadOS 16.5.1, Safari
16.5.1, macOS Ventura 13.4.1, iOS 15.7.7 and iPadOS 15.7.7.
Processing maliciously crafted web content may lead to
arbitrary code execution. Apple is aware of a report that
this issue may have been actively exploited.

Signed-off-by: Yogita Urade <yogita.urade@windriver.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-sato/webkit/webkitgtk/CVE-2023-32439.patch [new file with mode: 0644]
meta/recipes-sato/webkit/webkitgtk_2.36.8.bb