RHSA-2026:74084CriticalCVSS 9.6

Red Hat Security Advisory: webkit2gtk3 security update

Published
September 30, 2026
Last Modified
October 4, 2026

🔗 CVE IDs covered (323)

CVE-2026-4448 →CVE-2026-10941 →CVE-2026-43732 →CVE-2026-78958 →CVE-2026-7353 →CVE-2026-14388 →CVE-2026-79019 →CVE-2026-7900 →CVE-2026-9878 →CVE-2026-13975 →CVE-2026-14152 →CVE-2026-43716 →CVE-2026-79112 →CVE-2026-9941 →CVE-2026-10019 →CVE-2026-11104 →CVE-2026-17701 →CVE-2026-17704 →CVE-2026-79142 →CVE-2026-79282 →CVE-2024-8193 →CVE-2026-9879 →CVE-2026-9893 →CVE-2026-9911 →CVE-2026-11663 →CVE-2026-65341 →CVE-2026-17718 →CVE-2025-0436 →CVE-2026-9916 →CVE-2026-11005 →CVE-2026-11024 →CVE-2026-76041 →CVE-2026-10929 →CVE-2026-14411 →CVE-2026-43727 →CVE-2026-65334 →CVE-2026-79188 →CVE-2026-9935 →CVE-2026-65337 →CVE-2026-7943 →CVE-2026-9915 →CVE-2026-9940 →CVE-2026-11268 →CVE-2026-16413 →CVE-2026-43720 →CVE-2026-7923 →CVE-2026-10993 →CVE-2026-11675 →CVE-2026-14419 →CVE-2026-43707 →CVE-2025-8901 →CVE-2026-11066 →CVE-2026-11113 →CVE-2026-14125 →CVE-2026-14401 →CVE-2026-17689 →CVE-2026-64713 →CVE-2026-64753 →CVE-2026-6364 →CVE-2026-19160 →CVE-2026-43701 →CVE-2026-43804 →CVE-2026-64787 →CVE-2026-65333 →CVE-2026-8579 →CVE-2026-9924 →CVE-2026-14400 →CVE-2026-15774 →CVE-2026-19157 →CVE-2026-6296 →CVE-2026-14427 →CVE-2026-16419 →CVE-2026-78376 →CVE-2026-5870 →CVE-2026-6298 →CVE-2026-7340 →CVE-2026-7901 →CVE-2026-14418 →CVE-2025-0444 →CVE-2026-3931 →CVE-2026-8519 →CVE-2026-14385 →CVE-2026-64730 →CVE-2026-10012 →CVE-2026-11039 →CVE-2026-17847 →CVE-2026-79270 →CVE-2026-79275 →CVE-2026-5283 →CVE-2026-7920 →CVE-2026-11051 →CVE-2026-11055 →CVE-2026-17702 →CVE-2026-43699 →CVE-2026-78978 →CVE-2026-5879 →CVE-2026-13841 →CVE-2026-79127 →CVE-2026-9877 →CVE-2026-9927 →CVE-2026-11137 →CVE-2026-43745 →CVE-2026-79120 →CVE-2026-10979 →CVE-2026-11040 →CVE-2026-11088 →CVE-2026-14397 →CVE-2026-17676 →CVE-2026-43725 →CVE-2026-79043 →CVE-2026-79048 →CVE-2026-3909 →CVE-2026-13820 →CVE-2026-17667 →CVE-2026-11044 →CVE-2026-11159 →CVE-2026-78914 →CVE-2026-4460 →CVE-2026-9892 →CVE-2026-9998 →CVE-2026-43721 →CVE-2026-79230 →CVE-2026-17695 →CVE-2026-10009 →CVE-2026-5275 →CVE-2026-9969 →CVE-2026-11121 →CVE-2026-17677 →CVE-2026-17687 →CVE-2026-79147 →CVE-2026-13859 →CVE-2026-15109 →CVE-2026-39872 →CVE-2026-65335 →CVE-2026-79189 →CVE-2026-10011 →CVE-2026-13877 →CVE-2026-14425 →CVE-2026-10977 →CVE-2025-9478 →CVE-2026-9901 →CVE-2026-9909 →CVE-2026-13833 →CVE-2026-17790 →CVE-2026-19173 →CVE-2026-64718 →CVE-2026-4464 →CVE-2026-14386 →CVE-2026-17914 →CVE-2026-43740 →CVE-2026-65331 →CVE-2026-11004 →CVE-2026-11191 →CVE-2026-14429 →CVE-2026-78904 →CVE-2026-79130 →CVE-2026-3538 →CVE-2026-9910 →CVE-2026-17682 →CVE-2026-79131 →CVE-2024-8636 →CVE-2026-7942 →CVE-2026-9923 →CVE-2026-11138 →CVE-2026-17750 →CVE-2026-17757 →CVE-2026-17832 →CVE-2026-78989 →CVE-2026-10883 →CVE-2026-11090 →CVE-2026-7354 →CVE-2026-43731 →CVE-2026-65338 →CVE-2026-9882 →CVE-2026-9982 →CVE-2026-64728 →CVE-2026-79285 →CVE-2026-10881 →CVE-2026-10913 →CVE-2026-17655 →CVE-2026-17678 →CVE-2024-7532 →CVE-2026-9975 →CVE-2026-10914 →CVE-2026-13819 →CVE-2026-13971 →CVE-2026-16417 →CVE-2026-17671 →CVE-2026-64784 →CVE-2026-9908 →CVE-2026-11124 →CVE-2026-17712 →CVE-2026-43676 →CVE-2026-79138 →CVE-2026-9900 →CVE-2026-9914 →CVE-2026-13781 →CVE-2026-14413 →CVE-2026-15766 →CVE-2026-78965 →CVE-2026-83596 →CVE-2024-7966 →CVE-2026-4452 →CVE-2026-9899 →CVE-2026-9913 →CVE-2026-11043 →CVE-2026-14391 →CVE-2026-64715 →CVE-2026-64779 →CVE-2026-13885 →CVE-2026-14044 →CVE-2026-19154 →CVE-2026-43742 →CVE-2026-5868 →CVE-2026-8567 →CVE-2026-9928 →CVE-2026-9946 →CVE-2026-14384 →CVE-2026-17697 →CVE-2026-19161 →CVE-2026-78906 →CVE-2026-9925 →CVE-2026-9942 →CVE-2026-10974 →CVE-2026-10985 →CVE-2026-17675 →CVE-2026-17891 →CVE-2026-43715 →CVE-2026-64778 →CVE-2026-8510 →CVE-2026-9904 →CVE-2026-14414 →CVE-2026-17653 →CVE-2026-43726 →CVE-2026-43795 →CVE-2026-64782 →CVE-2026-65340 →CVE-2026-8556 →CVE-2026-0908 →CVE-2026-9999 →CVE-2026-11057 →CVE-2026-11061 →CVE-2026-14382 →CVE-2026-14412 →CVE-2026-64757 →CVE-2026-7949 →CVE-2026-13834 →CVE-2026-79144 →CVE-2026-84635 →CVE-2026-14387 →CVE-2026-17740 →CVE-2026-76046 →CVE-2026-79020 →CVE-2026-79149 →CVE-2024-9123 →CVE-2026-9965 →CVE-2026-10018 →CVE-2026-10889 →CVE-2026-10994 →CVE-2026-14410 →CVE-2026-17811 →CVE-2024-8198 →CVE-2026-9926 →CVE-2026-10930 →CVE-2026-11065 →CVE-2026-13883 →CVE-2026-17683 →CVE-2026-17801 →CVE-2026-28984 →CVE-2026-17721 →CVE-2026-43734 →CVE-2026-65351 →CVE-2026-3536 →CVE-2026-11109 →CVE-2026-65332 →CVE-2026-9981 →CVE-2026-9983 →CVE-2026-17691 →CVE-2026-17717 →CVE-2025-10502 →CVE-2026-10919 →CVE-2026-14398 →CVE-2026-17668 →CVE-2023-4860 →CVE-2026-8525 →CVE-2026-17785 →CVE-2026-79240 →CVE-2026-9953 →CVE-2026-11110 →CVE-2026-19176 →CVE-2026-9944 →CVE-2026-17714 →CVE-2026-65336 →CVE-2026-79229 →CVE-2026-10907 →CVE-2026-11111 →CVE-2026-14389 →CVE-2026-17745 →CVE-2026-43713 →CVE-2026-5277 →CVE-2026-9932 →CVE-2026-11099 · pendingCVE-2026-11123 →CVE-2026-64780 →CVE-2026-78905 →CVE-2026-8554 →CVE-2026-10925 →CVE-2026-11087 →CVE-2026-13780 →CVE-2026-14390 →CVE-2026-14396 →CVE-2026-17771 →CVE-2026-43712 →CVE-2026-7903 →CVE-2026-10020 →CVE-2026-10955 →CVE-2026-10999 →CVE-2026-14402 →CVE-2026-43663 →CVE-2026-64783 →CVE-2026-79118 →CVE-2026-7359 →CVE-2026-79269 →

📋 Description

CVE-2023-4860 — chromium-browser: skia: chromium-browser: skia: Inappropriate implementation in Skia CVE-2024-7532 — chromium-browser: angle: Out of bounds memory access in ANGLE CVE-2024-7966 — chromium-browser: skia: chromium-browser: skia: Out of bounds memory access in Skia in Google Chrome allows a remote attacker who had compromised the renderer process to perform out of bounds memory access via a crafted HTML page CVE-2024-8193 — chromium: skia: chromium: skia: Heap buffer overflow in Skia CVE-2024-8198 — chromium: skia: chromium: skia: Heap buffer overflow in Skia CVE-2024-8636 — chromium: skia: chromium: skia: Heap buffer overflow in Skia CVE-2024-9123 — chromium-browser: skia: chromium-browser: skia: Integer overflow in Skia in Google Chrome CVE-2025-0436 — chromium-browser: skia: chromium-browser: skia: Integer overflow in Skia CVE-2025-0444 — chromium-browser: skia: chromium-browser: skia: Use after free in Skia CVE-2025-8901 — chromium-browser: angle: ANGLE Out-of-Bounds Write Vulnerability CVE-2025-9478 — chromium-browser: angle: Use after free in ANGLE CVE-2025-10502 — chromium-browser: angle: Heap buffer overflow in ANGLE CVE-2026-0908 — chromium-browser: angle: Use after free in ANGLE CVE-2026-3536 — chromium-browser: angle: Integer overflow in ANGLE CVE-2026-3538 — chromium-browser: skia: chromium-browser: skia: Integer overflow in Skia CVE-2026-3909 — chromium-browser: skia: chromium-browser: skia: Out of bounds write in Skia CVE-2026-3931 — chromium-browser: skia: chromium-browser: skia: Heap buffer overflow in Skia CVE-2026-4448 — chromium-browser: angle: Heap buffer overflow in ANGLE CVE-2026-4452 — chromium-browser: angle: Integer overflow in ANGLE CVE-2026-4460 — chromium-browser: skia: chromium-browser: skia: Out of bounds read in Skia CVE-2026-4464 — chromium-browser: angle: Integer overflow in ANGLE CVE-2026-5275 — chromium-browser: angle: Heap buffer overflow in ANGLE CVE-2026-5277 — chromium-browser: angle: Integer overflow in ANGLE CVE-2026-5283 — chromium-browser: angle: Inappropriate implementation in ANGLE CVE-2026-5868 — chromium-browser: angle: Heap buffer overflow in ANGLE CVE-2026-5870 — chromium-browser: skia: chromium-browser: skia: Integer overflow in Skia CVE-2026-5879 — chromium-browser: angle: Insufficient validation of untrusted input in ANGLE CVE-2026-6296 — chromium-browser: angle: Heap buffer overflow in ANGLE CVE-2026-6298 — chromium-browser: skia: chromium-browser: skia: Heap buffer overflow in Skia CVE-2026-6364 — chromium-browser: skia: chromium-browser: skia: Out of bounds read in Skia CVE-2026-7340 — chromium-browser: angle: Integer overflow in ANGLE CVE-2026-7353 — chromium-browser: skia: chromium-browser: skia: Heap buffer overflow in Skia CVE-2026-7354 — chromium-browser: angle: Out of bounds read and write in Angle CVE-2026-7359 — chromium-browser: angle: Use after free in ANGLE CVE-2026-7900 — chromium-browser: angle: Heap buffer overflow in ANGLE CVE-2026-7901 — chromium-browser: angle: Use after free in ANGLE CVE-2026-7903 — chromium-browser: angle: Integer overflow in ANGLE CVE-2026-7920 — chromium-browser: skia: chromium-browser: skia: Use after free in Skia CVE-2026-7923 — chromium-browser: skia: chromium-browser: skia: Out of bounds write in Skia CVE-2026-7942 — chromium-browser: angle: Integer overflow in ANGLE CVE-2026-7943 — chromium-browser: angle: Insufficient validation of untrusted input in ANGLE CVE-2026-7949 — chromium-browser: skia: chromium-browser: skia: Out of bounds read in Skia CVE-2026-8510 — chromium-browser: skia: chromium-browser: skia: Integer overflow in Skia CVE-2026-8519 — chromium-browser: angle: chromium-browser: Integer overflow in ANGLE CVE-2026-8525 — chromium-browser: angle: chromium-browser: Heap buffer overflow in ANGLE CVE-2026-8554 — chromium-browser: angle: chromium-browser: Type Confusion in ANGLE CVE-2026-8556 — chromium-browser: angle: chromium-browser: Inappropriate implementation in ANGLE CVE-2026-8567 — chromium-browser: angle: chromium-browser: Integer overflow in ANGLE CVE-2026-8579 — chromium-browser: skia: chromium-browser: skia: Insufficient validation of untrusted input in Skia CVE-2026-9877 — chromium-browser: angle: Use after free in ANGLE CVE-2026-9878 — chromium-browser: angle: Use after free in ANGLE CVE-2026-9879 — chromium-browser: angle: Out of bounds write in ANGLE CVE-2026-9882 — chromium-browser: angle: Integer overflow in ANGLE CVE-2026-9892 — chromium-browser: skia: chromium-browser: skia: Inappropriate implementation in Skia CVE-2026-9893 — chromium-browser: skia: chromium-browser: skia: Use after free in Skia CVE-2026-9899 — chromium-browser: angle: Use after free in ANGLE CVE-2026-9900 — chromium-browser: angle: Out of bounds write in ANGLE CVE-2026-9901 — chromium-browser: angle: Use after free in ANGLE CVE-2026-9904 — chromium-browser: angle: Use after free in ANGLE CVE-2026-9908 — chromium-browser: angle: Out of bounds read in ANGLE CVE-2026-9909 — chromium-browser: skia: chromium-browser: skia: Integer overflow in Skia CVE-2026-9910 — chromium-browser: angle: Out of bounds memory access in ANGLE CVE-2026-9911 — chromium-browser: angle: Integer overflow in ANGLE CVE-2026-9913 — chromium-browser: angle: Inappropriate implementation in ANGLE CVE-2026-9914 — chromium-browser: angle: Insufficient validation of untrusted input in ANGLE CVE-2026-9915 — chromium-browser: angle: Heap buffer overflow in ANGLE CVE-2026-9916 — chromium-browser: angle: Out of bounds write in ANGLE CVE-2026-9923 — chromium-browser: skia: chromium-browser: skia: Use after free in Skia CVE-2026-9924 — chromium-browser: angle: Heap buffer overflow in ANGLE CVE-2026-9925 — chromium-browser: angle: Use after free in ANGLE CVE-2026-9926 — chromium-browser: angle: Heap buffer overflow in ANGLE CVE-2026-9927 — chromium-browser: angle: Use after free in ANGLE CVE-2026-9928 — chromium-browser: angle: Out of bounds read in ANGLE CVE-2026-9932 — chromium-browser: angle: Use after free in ANGLE CVE-2026-9935 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-9940 — chromium-browser: angle: Heap buffer overflow in ANGLE CVE-2026-9941 — chromium-browser: angle: Use after free in ANGLE CVE-2026-9942 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-9944 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-9946 — chromium-browser: angle: Use after free in ANGLE CVE-2026-9953 — chromium-browser: angle: Out of bounds read in ANGLE CVE-2026-9965 — chromium-browser: angle: Out of bounds write in ANGLE CVE-2026-9969 — chromium-browser: angle: Insufficient validation of untrusted input in ANGLE CVE-2026-9975 — chromium-browser: angle: Out of bounds read and write in ANGLE CVE-2026-9981 — chromium-browser: skia: chromium-browser: skia: Inappropriate implementation in Skia CVE-2026-9982 — chromium-browser: angle: Insufficient validation of untrusted input in ANGLE CVE-2026-9983 — chromium-browser: skia: chromium-browser: skia: Type Confusion in Skia CVE-2026-9998 — chromium-browser: skia: chromium-browser: skia: Integer overflow in Skia CVE-2026-9999 — chromium-browser: angle: Inappropriate implementation in ANGLE CVE-2026-10009 — chromium-browser: skia: chromium-browser: skia: Integer overflow in Skia CVE-2026-10011 — chromium-browser: skia: chromium-browser: skia: Inappropriate implementation in Skia CVE-2026-10012 — chromium-browser: skia: chromium-browser: skia: Use after free in Skia CVE-2026-10018 — chromium-browser: angle: Integer overflow in ANGLE CVE-2026-10019 — chromium-browser: angle: Integer overflow in ANGLE CVE-2026-10020 — chromium-browser: skia: chromium-browser: skia: Insufficient validation of untrusted input in Skia CVE-2026-10881 — chromium-browser: angle: Out of bounds read and write in ANGLE CVE-2026-10883 — chromium-browser: angle: Out of bounds write in ANGLE CVE-2026-10889 — chromium-browser: angle: Out of bounds read in ANGLE CVE-2026-10907 — chromium-browser: angle: Out of bounds write in ANGLE CVE-2026-10913 — chromium-browser: angle: Use after free in ANGLE CVE-2026-10914 — chromium-browser: angle: Use after free in ANGLE CVE-2026-10919 — chromium-browser: angle: Use after free in ANGLE CVE-2026-10925 — chromium-browser: skia: chromium-browser: skia: Out of bounds write in Skia CVE-2026-10929 — chromium-browser: angle: Heap buffer overflow in ANGLE CVE-2026-10930 — chromium-browser: angle: Out of bounds read in ANGLE CVE-2026-10941 — chromium-browser: skia: chromium-browser: skia: Out of bounds memory access in Skia CVE-2026-10955 — chromium-browser: angle: Type Confusion in ANGLE CVE-2026-10974 — chromium-browser: angle: Insufficient validation of untrusted input in ANGLE CVE-2026-10977 — chromium-browser: skia: chromium-browser: skia: Uninitialized Use in Skia CVE-2026-10979 — chromium-browser: angle: Out of bounds read in ANGLE CVE-2026-10985 — chromium-browser: skia: chromium-browser: skia: Out of bounds read in Skia CVE-2026-10993 — chromium-browser: skia: chromium-browser: skia: Heap buffer overflow in Skia CVE-2026-10994 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-10999 — chromium-browser: angle: Out of bounds memory access in ANGLE CVE-2026-11004 — chromium-browser: angle: Out of bounds read in ANGLE CVE-2026-11005 — chromium-browser: angle: Out of bounds read in ANGLE CVE-2026-11024 — chromium-browser: skia: chromium-browser: skia: Stack buffer overflow in Skia CVE-2026-11039 — chromium-browser: skia: chromium-browser: skia: Uninitialized Use in Skia CVE-2026-11040 — chromium-browser: angle: Use after free in ANGLE CVE-2026-11043 — chromium-browser: angle: Out of bounds write in ANGLE CVE-2026-11044 — chromium-browser: angle: Integer overflow in ANGLE CVE-2026-11051 — chromium-browser: angle: Out of bounds read in ANGLE CVE-2026-11055 — chromium-browser: angle: Use after free in ANGLE CVE-2026-11057 — chromium-browser: skia: chromium-browser: skia: Uninitialized Use in Skia CVE-2026-11061 — chromium-browser: angle: Out of bounds read in ANGLE CVE-2026-11065 — chromium-browser: angle: Use after free in ANGLE CVE-2026-11066 — chromium-browser: angle: Insufficient validation of untrusted input in ANGLE CVE-2026-11087 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-11088 — chromium-browser: angle: Integer overflow in ANGLE CVE-2026-11090 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-11099 — chromium-browser: skia: chromium-browser: skia: Vulnerability in Skia CVE-2026-11104 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-11109 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-11110 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-11111 — chromium-browser: angle: Out of bounds read in ANGLE CVE-2026-11113 — chromium-browser: angle: Insufficient validation of untrusted input in ANGLE CVE-2026-11121 — chromium-browser: skia: chromium-browser: skia: Insufficient validation of untrusted input in Skia CVE-2026-11123 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-11124 — chromium-browser: skia: chromium-browser: skia: Heap buffer overflow in Skia CVE-2026-11137 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-11138 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-11159 — chromium-browser: skia: chromium-browser: skia: Uninitialized Use in Skia CVE-2026-11191 — chromium-browser: angle: Out of bounds memory access in ANGLE CVE-2026-11268 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-11663 — chromium-browser: skia: chromium-browser: skia: Use after free in Skia CVE-2026-11675 — chromium-browser: skia: chromium-browser: skia: Insufficient validation of untrusted input in Skia CVE-2026-13780 — chromium-browser: angle: Insufficient validation of untrusted input in ANGLE CVE-2026-13781 — chromium-browser: skia: chromium-browser: skia: Insufficient validation of untrusted input in Skia CVE-2026-13819 — chromium-browser: angle: Out of bounds read in ANGLE CVE-2026-13820 — chromium-browser: skia: chromium-browser: skia: Out of bounds read in Skia CVE-2026-13833 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-13834 — chromium-browser: angle: Insufficient validation of untrusted input in ANGLE CVE-2026-13841 — chromium-browser: skia: chromium-browser: skia: Integer overflow in Skia CVE-2026-13859 — chromium-browser: angle: Inappropriate implementation in ANGLE CVE-2026-13877 — chromium-browser: angle: Insufficient validation of untrusted input in ANGLE CVE-2026-13883 — chromium-browser: angle: Type Confusion in ANGLE CVE-2026-13885 — chromium-browser: skia: chromium-browser: skia: Use after free in Skia CVE-2026-13971 — chromium-browser: skia: chromium-browser: skia: Uninitialized Use in Skia CVE-2026-13975 — chromium-browser: angle: Out of bounds read in ANGLE CVE-2026-14044 — chromium-browser: angle: Use after free in ANGLE CVE-2026-14125 — chromium-browser: angle: Uninitialized Use in ANGLE CVE-2026-14152 — chromium-browser: angle: Out of bounds write in ANGLE CVE-2026-14382 — chromium-browser: angle: chromium-browser: Insufficient validation of untrusted input in ANGLE CVE-2026-14384 — chromium-browser: angle: chromium-browser: Out of bounds read in ANGLE CVE-2026-14385 — chromium-browser: angle: chromium-browser: Heap buffer overflow in ANGLE CVE-2026-14386 — chromium-browser: angle: chromium-browser: Out of bounds read in ANGLE CVE-2026-14387 — chromium-browser: skia: chromium-browser: skia: Integer overflow in Skia CVE-2026-14388 — chromium-browser: angle: chromium-browser: Out of bounds read in ANGLE CVE-2026-14389 — chromium-browser: skia: chromium-browser: skia: Integer overflow in Skia CVE-2026-14390 — chromium-browser: angle: chromium-browser: Use after free in ANGLE CVE-2026-14391 — chromium-browser: angle: chromium-browser: Integer overflow in ANGLE CVE-2026-14396 — chromium-browser: angle: chromium-browser: Out of bounds read in ANGLE CVE-2026-14397 — chromium-browser: angle: Out of bounds write in ANGLE CVE-2026-14398 — chromium-browser: angle: chromium-browser: Use after free in ANGLE CVE-2026-14400 — chromium-browser: angle: chromium-browser: Out of bounds write in ANGLE CVE-2026-14401 — chromium-browser: angle: chromium-browser: Insufficient validation of untrusted input in ANGLE CVE-2026-14402 — chromium-browser: angle: chromium-browser: Uninitialized Use in ANGLE CVE-2026-14410 — chromium-browser: skia: chromium-browser: skia: Inappropriate implementation in Skia CVE-2026-14411 — chromium-browser: angle: chromium-browser: Insufficient validation of untrusted input in ANGLE CVE-2026-14412 — chromium-browser: angle: chromium-browser: Insufficient validation of untrusted input in ANGLE CVE-2026-14413 — chromium-browser: angle: chromium-browser: Uninitialized Use in ANGLE CVE-2026-14414 — chromium-browser: skia: chromium-browser: skia: Insufficient validation of untrusted input in Skia CVE-2026-14418 — chromium-browser: angle: chromium-browser: Uninitialized Use in ANGLE CVE-2026-14419 — chromium-browser: skia: chromium-browser: skia: Use after free in Skia CVE-2026-14425 — chromium-browser: angle: chromium-browser: Use after free in ANGLE CVE-2026-14427 — chromium-browser: skia: chromium-browser: skia: Heap buffer overflow in Skia CVE-2026-14429 — chromium-browser: skia: chromium-browser: skia: Insufficient validation of untrusted input in Skia CVE-2026-15109 — chromium-browser: angle: chromium-browser: Uninitialized Use in ANGLE CVE-2026-15766 — chromium-browser: skia: chromium-browser: skia: Uninitialized Use in Skia CVE-2026-15774 — chromium-browser: skia: chromium-browser: skia: Use after free in Skia CVE-2026-16413 — chromium-browser: angle: Chromium: Sandbox escape via out-of-bounds write in ANGLE CVE-2026-16417 — chromium-browser: skia: chromium-browser: skia: Information disclosure via uninitialized use in Skia CVE-2026-16419 — chromium-browser: angle: Google Chrome's ANGLE component: Sandbox escape via out-of-bounds memory access CVE-2026-17653 — chromium-browser: skia: chromium-browser: skia: Use after free in Skia CVE-2026-17655 — chromium-browser: angle: chromium-browser: Insufficient validation of untrusted input in ANGLE CVE-2026-17667 — chromium-browser: angle: chromium-browser: Uninitialized Use in ANGLE CVE-2026-17668 — chromium-browser: angle: chromium-browser: Uninitialized Use in ANGLE CVE-2026-17671 — chromium-browser: angle: chromium-browser: Insufficient validation of untrusted input in ANGLE CVE-2026-17675 — chromium-browser: angle: chromium-browser: Out of bounds write in ANGLE CVE-2026-17676 — chromium-browser: angle: chromium-browser: Inappropriate implementation in ANGLE CVE-2026-17677 — chromium-browser: angle: chromium-browser: Inappropriate implementation in ANGLE CVE-2026-17678 — chromium-browser: angle: chromium-browser: Out of bounds read in ANGLE CVE-2026-17682 — chromium-browser: angle: chromium-browser: Integer overflow in ANGLE CVE-2026-17683 — chromium-browser: angle: chromium-browser: Inappropriate implementation in ANGLE CVE-2026-17687 — chromium-browser: ANGLE: angle: chromium-browser: Type Confusion in ANGLE CVE-2026-17689 — chromium-browser: angle: chromium-browser: Uninitialized Use in ANGLE CVE-2026-17691 — chromium-browser: angle: chromium-browser: Out of bounds write in ANGLE CVE-2026-17695 — chromium-browser: angle: chromium-browser: Inappropriate implementation in ANGLE CVE-2026-17697 — chromium-browser: angle: chromium-browser: Type Confusion in ANGLE CVE-2026-17701 — chromium-browser: angle: chromium-browser: Out of bounds read in ANGLE CVE-2026-17702 — chromium-browser: skia: chromium-browser: skia: Inappropriate implementation in Skia CVE-2026-17704 — chromium-browser: angle: chromium-browser: Use after free in ANGLE CVE-2026-17712 — chromium-browser: skia: chromium-browser: skia: Race in Skia CVE-2026-17714 — chromium-browser: angle: chromium-browser: Uninitialized Use in ANGLE CVE-2026-17717 — chromium-browser: angle: chromium-browser: Integer overflow in ANGLE CVE-2026-17718 — chromium-browser: angle: chromium-browser: Use after free in ANGLE CVE-2026-17721 — chromium-browser: angle: chromium-browser: Out of bounds write in ANGLE CVE-2026-17740 — chromium-browser: angle: chromium-browser: Uninitialized Use in ANGLE CVE-2026-17745 — chromium-browser: skia: chromium-browser: skia: Out of bounds read in Skia CVE-2026-17750 — chromium-browser: angle: chromium-browser: Use after free in ANGLE CVE-2026-17757 — chromium-browser: skia: chromium-browser: skia: Uninitialized Use in Skia CVE-2026-17771 — chromium-browser: skia: chromium-browser: skia: Uninitialized Use in Skia CVE-2026-17785 — chromium-browser: angle: chromium-browser: Uninitialized Use in ANGLE CVE-2026-17790 — chromium-browser: angle: chromium-browser: Uninitialized Use in ANGLE CVE-2026-17801 — chromium-browser: angle: chromium-browser: Out of bounds memory access in ANGLE CVE-2026-17811 — chromium-browser: angle: chromium-browser: Use after free in ANGLE CVE-2026-17832 — chromium-browser: angle: chromium-browser: Use after free in ANGLE CVE-2026-17847 — chromium-browser: angle: chromium-browser: Insufficient validation of untrusted input in ANGLE CVE-2026-17891 — chromium-browser: angle: chromium-browser: Use after free in ANGLE CVE-2026-17914 — chromium-browser: skia: chromium-browser: skia: Side-channel information leakage in Skia CVE-2026-19154 — chromium-browser: skia: chromium-browser: Use after free in Skia CVE-2026-19157 — chromium-browser: angle: ANGLE: Sandbox escape via out-of-bounds write in Google Chrome on Android CVE-2026-19160 — chromium-browser: skia: chromium-browser: skia: Information disclosure via uninitialized use in Google Chrome CVE-2026-19161 — chromium-browser: skia: chromium-browser: skia: Cross-origin data leakage via uninitialized use CVE-2026-19173 — chromium-browser: skia: chromium-browser: skia: Out of bounds write in Skia CVE-2026-19176 — chromium-browser: skia: chromium-browser: skia: Arbitrary code execution via crafted HTML page CVE-2026-28984 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-39872 — webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash CVE-2026-43663 — webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash CVE-2026-43676 — webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash CVE-2026-43699 — webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash CVE-2026-43701 — webkitgtk: webkitgtk: A malicious website may process restricted web content outside the sandbox CVE-2026-43707 — webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash CVE-2026-43712 — webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash CVE-2026-43713 — webkitgtk: webkitgtk: Visiting a website may leak sensitive data CVE-2026-43715 — webkitgtk: webkitgtk: Maliciously crafted web content may lead to memory corruption CVE-2026-43716 — webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash CVE-2026-43720 — webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash CVE-2026-43721 — webkitgtk: webkitgtk: A malicious website may silently hijack clipboard data CVE-2026-43725 — webkitgtk: webkitgtk: A malicious website may process restricted web content outside the sandbox CVE-2026-43726 — webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash CVE-2026-43727 — webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash CVE-2026-43731 — webkitgtk: webkitgtk: Maliciously crafted web content may lead to memory corruption CVE-2026-43732 — webkitgtk: webkitgtk: Maliciously crafted web content may disclose sensitive user information CVE-2026-43734 — webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash CVE-2026-43740 — webkitgtk: webkitgtk: Maliciously crafted web content may disclose process memory CVE-2026-43742 — webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash CVE-2026-43745 — webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash CVE-2026-43795 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-43804 — webkitgtk: Visiting a website may lead to an app denial-of-service CVE-2026-64713 — webkitgtk: Websites may know if the user has visited a given link CVE-2026-64715 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash CVE-2026-64718 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-64728 — webkitgtk: Maliciously crafted web content may violate iframe sandboxing policy CVE-2026-64730 — webkitgtk: Visiting a website that frames malicious content may lead to UI spoofing CVE-2026-64753 — webkitgtk: Processing maliciously crafted web content may disclose sensitive user information CVE-2026-64757 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-64778 — webkitgtk: Visiting a maliciously crafted website may leak sensitive data CVE-2026-64779 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-64780 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-64782 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-64783 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-64784 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-64787 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected process termination CVE-2026-65331 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-65332 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-65333 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-65334 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-65335 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-65336 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-65337 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-65338 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-65340 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-65341 — webkitgtk: Processing maliciously crafted web content may lead to memory corruption CVE-2026-65351 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash CVE-2026-76041 — chromium-browser: skia: chromium-browser: skia: Information leak in Skia CVE-2026-76046 — ANGLE: chromium-browser: angle: ANGLE: Arbitrary code execution outside sandbox via crafted HTML page CVE-2026-78376 — webkitgtk: use-after-free of JSCValue function parameters CVE-2026-78904 — chromium-browser: angle: ANGLE: Arbitrary code execution via type confusion in crafted HTML page CVE-2026-78905 — chromium-browser: angle: ANGLE: Arbitrary code execution via type confusion in crafted HTML CVE-2026-78906 — chromium-browser: angle: Chromium ANGLE: Arbitrary code execution via race condition in HTML processing CVE-2026-78914 — chromium-browser: skia: chromium-browser: skia: Information disclosure via uninitialized resource in Skia CVE-2026-78958 — chromium-browser: skia: chromium-browser: Uninitialized resource in Skia CVE-2026-78965 — chromium-browser: angle: ANGLE: Information disclosure via uninitialized resource CVE-2026-78978 — chromium-browser: angle: ANGLE: Arbitrary code execution in Google Chrome via crafted HTML page CVE-2026-78989 — chromium-browser: angle: ANGLE in Google Chrome: Arbitrary code execution via crafted HTML page CVE-2026-79019 — chromium-browser: angle: ANGLE: Arbitrary code execution via a crafted HTML page CVE-2026-79020 — chromium-browser: skia: chromium-browser: skia: Out of bounds read in Skia CVE-2026-79043 — chromium-browser: angle: ANGLE: Remote code execution via crafted HTML page CVE-2026-79048 — chromium-browser: angle: ANGLE: Arbitrary code execution in Google Chrome via crafted HTML page CVE-2026-79112 — chromium-browser: skia: chromium-browser: Out of bounds read in Skia CVE-2026-79118 — chromium-browser: angle: Chromium: Information disclosure due to uninitialized resource in ANGLE CVE-2026-79120 — chromium-browser: angle: ANGLE in Google Chrome: Cross-origin data disclosure via uninitialized resource CVE-2026-79127 — chromium-browser: angle: ANGLE in Google Chrome: Arbitrary code execution via out-of-bounds write CVE-2026-79130 — chromium-browser: angle: Google Chrome ANGLE: Arbitrary code execution via crafted HTML page CVE-2026-79131 — chromium-browser: angle: Chromium: Remote code execution via out-of-bounds write in ANGLE CVE-2026-79138 — chromium-browser: angle: chromium-browser: Arbitrary Code Execution via out-of-bounds write in ANGLE CVE-2026-79142 — chromium-browser: ANGLE: angle: ANGLE: Arbitrary Code Execution via Crafted HTML Page CVE-2026-79144 — chromium-browser: skia: chromium-browser: Information leak in Skia CVE-2026-79147 — chromium-browser: skia: chromium-browser: skia: Information leak via crafted HTML page in Google Chrome CVE-2026-79149 — ANGLE: chromium-browser: angle: ANGLE: Arbitrary code execution via use-after-free vulnerability CVE-2026-79188 — chromium-browser: angle: Chromium ANGLE: Arbitrary code execution via crafted HTML page CVE-2026-79189 — chromium-browser: angle: ANGLE: Arbitrary code execution via a crafted HTML page CVE-2026-79229 — chromium-browser: angle: Chromium: Information disclosure via uninitialized resource in ANGLE CVE-2026-79230 — chromium-browser: angle: ANGLE in Google Chrome: Arbitrary code execution via improper input validation CVE-2026-79240 — chromium-browser: angle: ANGLE in Google Chrome: Arbitrary code execution via out-of-bounds write CVE-2026-79269 — chromium-browser: angle: Chromium: Web origin policy bypass via uninitialized resource in ANGLE CVE-2026-79270 — chromium-browser: angle: Chromium-browser: Memory disclosure via uninitialized resource in ANGLE CVE-2026-79275 — chromium-browser: angle: ANGLE: Arbitrary code execution via use after free CVE-2026-79282 — chromium-browser: angle: ANGLE in Google Chrome: Arbitrary code execution via crafted HTML page CVE-2026-79285 — chromium-browser: angle: ANGLE: Information disclosure via uninitialized resource CVE-2026-83596 — webkitgtk: Validate the full FeatureList array once in OpenTypeVerticalData findFeature CVE-2026-84635 — webkitgtk: Processing maliciously crafted web content may lead to an unexpected process termination

🎯 Affected products47

  • Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-0:2.54.0-1.el8_10.aarch64 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-0:2.54.0-1.el8_10.i686 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-0:2.54.0-1.el8_10.ppc64le as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-0:2.54.0-1.el8_10.s390x as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-0:2.54.0-1.el8_10.src as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-0:2.54.0-1.el8_10.x86_64 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-debuginfo-0:2.54.0-1.el8_10.aarch64 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-debuginfo-0:2.54.0-1.el8_10.i686 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-debuginfo-0:2.54.0-1.el8_10.ppc64le as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-debuginfo-0:2.54.0-1.el8_10.s390x as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-debuginfo-0:2.54.0-1.el8_10.x86_64 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-debugsource-0:2.54.0-1.el8_10.aarch64 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-debugsource-0:2.54.0-1.el8_10.i686 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-debugsource-0:2.54.0-1.el8_10.ppc64le as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-debugsource-0:2.54.0-1.el8_10.s390x as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-debugsource-0:2.54.0-1.el8_10.x86_64 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-devel-0:2.54.0-1.el8_10.aarch64 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-devel-0:2.54.0-1.el8_10.i686 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-devel-0:2.54.0-1.el8_10.ppc64le as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-devel-0:2.54.0-1.el8_10.s390x as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-devel-0:2.54.0-1.el8_10.x86_64 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-devel-debuginfo-0:2.54.0-1.el8_10.aarch64 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-devel-debuginfo-0:2.54.0-1.el8_10.i686 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-devel-debuginfo-0:2.54.0-1.el8_10.ppc64le as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-devel-debuginfo-0:2.54.0-1.el8_10.s390x as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-devel-debuginfo-0:2.54.0-1.el8_10.x86_64 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-jsc-0:2.54.0-1.el8_10.aarch64 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-jsc-0:2.54.0-1.el8_10.i686 as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • webkit2gtk3-jsc-0:2.54.0-1.el8_10.ppc64le as a component of Red Hat Enterprise Linux AppStream (v. 8)
  • +17 more not shown

✅ Remediation

For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Workaround: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability. Workaround: Do not process or load untrusted web content with WebKitGTK. In Red Hat Enterprise Linux 7, the following packages require WebKitGTK4: evolution-data-server, glade, gnome-boxes, gnome-initial-setup, gnome-online-accounts, gnome-shell, shotwell, sushi and yelp. This vulnerability can only be exploited when these packages are installed in the system and being used via a graphical interface to process untrusted web content, via GNOME for example. In gnome-shell, the vulnerability can be exploited by an attacker from the local network without user interaction. To mitigate this vulnerability, consider removing these packages. Note that some of these packages are required by GNOME, removing them will also remove GNOME and other packages, breaking functionality. However, the server can still be used via the terminal interface. Additionally, WebKitGTK3 is not required by any package. Therefore, it can be removed without consequences or break of functionality. Workaround: Do not visit untrusted websites or load untrusted web content with WebKitGTK. In Red Hat Enterprise Linux 7, the following packages require WebKitGTK4: evolution-data-server, glade, gnome-boxes, gnome-initial-setup, gnome-online-accounts, gnome-shell, shotwell, sushi and yelp. This vulnerability can only be exploited when these packages are installed in the system and being used via a graphical interface to process untrusted web content, via GNOME for example. In gnome-shell, the vulnerability can be exploited by an attacker from the local network without user interaction. To mitigate this vulnerability, consider removing these packages. Note that some of these packages are required by GNOME, removing them will also remove GNOME and other packages, breaking functionality. However, the server can still be used via the terminal interface. Additionally, WebKitGTK3 is not required by any package. Therefore, it can be removed without consequences or break of functionality. Workaround: Avoid visiting untrusted websites or opening untrusted HTML content. Users should exercise caution when browsing the internet and only access reputable sources to reduce the risk of exploitation.

🔗 References (324)