[CLSA-2026:1784987695] webkit2gtk3: Fix of 23 CVEs
Type:
security
Severity:
Important
Release date:
2026-07-25 13:55:26 UTC
Description:
- Rebase to webkitgtk 2.52.5 (WebKitGTK Security Advisory WSA-2026-0004), aligning with the 2.52.x security baseline shipped by RHEL 9 (RHSA-2026:42062). - CVEs resolved by this rebase: CVE-2024-4367, CVE-2026-39872, CVE-2026-43663, CVE-2026-43676, CVE-2026-43699, CVE-2026-43701, CVE-2026-43705, CVE-2026-43707, CVE-2026-43712, CVE-2026-43713, CVE-2026-43715, CVE-2026-43716, CVE-2026-43720, CVE-2026-43721, CVE-2026-43725, CVE-2026-43726, CVE-2026-43727, CVE-2026-43731, CVE-2026-43732, CVE-2026-43734, CVE-2026-43740, CVE-2026-43742, CVE-2026-43745. - Drop fix-system-malloc-llint-extractor.patch; fixed upstream in 2.52.5 (WebKit 314364@main). - Refresh the libsoup2 compat patch onto the 2.52.5 library-version context; the webkit2gtk-4.0 SONAME (libwebkit2gtk-4.0.so.37) is preserved.
Updated packages:
  • webkit2gtk3-2.52.5-1.el9_6.tuxcare.els6.x86_64.rpm
    sha:162b3a8a314ad34b079c55fcb7beace50a72125ab516691ac2c5a4154e1bd26e
  • webkit2gtk3-devel-2.52.5-1.el9_6.tuxcare.els6.x86_64.rpm
    sha:af781aea4348f67e86eeaa7d58dc153ff6b0aa3561e1ce22e90150330abe5dad
  • webkit2gtk3-jsc-2.52.5-1.el9_6.tuxcare.els6.x86_64.rpm
    sha:7551904c05a0f6133999c9020853f5decefe305c5b47ec43c28056e64b770abc
  • webkit2gtk3-jsc-devel-2.52.5-1.el9_6.tuxcare.els6.x86_64.rpm
    sha:681ae5a587f22463e6ab8c384310017ecb7137cdebdaf1106422df9b805af3a8
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.