File _patchinfo of Package patchinfo.41094

<patchinfo incident="41094">
  <issue tracker="bnc" id="1250439">VUL-0: CVE-2025-43272: webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash</issue>
  <issue tracker="bnc" id="1250442">VUL-0: CVE-2025-43368: webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash</issue>
  <issue tracker="bnc" id="1250440">VUL-0: CVE-2025-43342: webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash</issue>
  <issue tracker="bnc" id="1250441">VUL-0: CVE-2025-43356: webkitgtk: A website may be able to access sensor information without user consent</issue>
  <issue tracker="bnc" id="1251975"/>
  <issue tracker="cve" id="2025-43272"/>
  <issue tracker="cve" id="2025-43368"/>
  <issue tracker="cve" id="2025-43356"/>
  <issue tracker="cve" id="2025-43342"/>
  <issue tracker="cve" id="2025-43343"/>
  <packager>mgorse</packager>
  <rating>important</rating>
  <category>security</category>
  <summary>Security update for webkit2gtk3</summary>
  <description>This update for webkit2gtk3 fixes the following issues:

 - CVE-2025-43343: improved memory handling in web content processing to prevent process crash (bsc#1251975)
 - CVE-2025-43272: improved memory handling to prevent unexpected process crash (bsc#1250439)
 - CVE-2025-43342: correctness issue was addressed with improved checks to prevent unexcepted process crash (bsc#1250440)
 - CVE-2025-43356: improved handling of caches to prevent sensor access without consent (bsc#1250441)
 - CVE-2025-43368: improved memory management to prevent a use-after-free (bsc#1250442)
</description>
</patchinfo>
openSUSE Build Service is sponsored by