File _patchinfo of Package patchinfo.25307
<patchinfo incident="25307">
<issue tracker="bnc" id="1201980">VUL-0: webkit2gtk3: WebKitGTK and WPE WebKit Security Advisory WSA-2022-0007</issue>
<issue tracker="cve" id="2022-32792"/>
<issue tracker="cve" id="2022-32816"/>
<packager>mgorse</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for webkit2gtk3</summary>
<description>This update for webkit2gtk3 fixes the following issues:
- Update to version 2.36.5 (bsc#1201980):
- Add support for PAC proxy in the WebDriver implementation.
- Fix video playback when loaded through custom URIs, this fixes
video playback in the Yelp documentation browser.
- Fix WebKitWebView::context-menu when using GTK4.
- Fix LTO builds with GCC.
- Fix several crashes and rendering issues.
- Security fixes:
- CVE-2022-32792: Fixed processing maliciously crafted web content may lead to
arbitrary code execution.
- CVE-2022-32816: Fixed visiting a website that frames malicious content may lead to
UI spoofing.
</description>
</patchinfo>