https://discourse.gnome.org/t/webkitgtk-2-34-4-fixes-safari-leaks-vulnerability/8692 https://safarileaks.com/ Changelog says "Fix several crashes and rendering issues." but Discourse post says 2.34.4 fixes "Safari leaks" vulnerability which can leak website data to other websites. Seemingly no CVEs.
Advisory released but apparently no CVE for the Safari leaks issue yet
Created attachment 763084 [details, diff] Bump commit I have the bump build-testing, but off to bed before it completes. If someone wants to take the commit with git-am, build test and push it in if all good, I'd be fine with that. Otherwise I'll get to it in the morning.
*** Bug 831761 has been marked as a duplicate of this bug. ***
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=f5bad592e6fceebff1ebf5a0d488c9d732f49e42 commit f5bad592e6fceebff1ebf5a0d488c9d732f49e42 Author: Mart Raudsepp <leio@gentoo.org> AuthorDate: 2022-01-21 21:54:49 +0000 Commit: Sam James <sam@gentoo.org> CommitDate: 2022-01-22 01:17:09 +0000 net-libs/webkit-gtk: security bump to 2.34.4 Bug: https://bugs.gentoo.org/831739 Package-Manager: Portage-3.0.20, Repoman-3.0.2 Signed-off-by: Mart Raudsepp <leio@gentoo.org> Signed-off-by: Sam James <sam@gentoo.org> net-libs/webkit-gtk/Manifest | 1 + net-libs/webkit-gtk/webkit-gtk-2.34.4.ebuild | 272 +++++++++++++++++++++++++++ 2 files changed, 273 insertions(+)
commit d2418b0a913a694a55e21440268b44301931867c Author: John Helmert III <ajak@gentoo.org> Date: Mon Jan 31 21:31:04 2022 -0600 [ GLSA 202202-01 ] WebkitGTK+: Multiple vulnerabilities Signed-off-by: John Helmert III <ajak@gentoo.org>
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=d5526c1acd16c113397ef0c689aadc00fe88ab94 commit d5526c1acd16c113397ef0c689aadc00fe88ab94 Author: Matt Turner <mattst88@gentoo.org> AuthorDate: 2022-03-18 19:18:08 +0000 Commit: Matt Turner <mattst88@gentoo.org> CommitDate: 2022-03-18 19:23:32 +0000 net-libs/webkit-gtk: Drop old versions Bug: https://bugs.gentoo.org/831739 Bug: https://bugs.gentoo.org/832990 Signed-off-by: Matt Turner <mattst88@gentoo.org> net-libs/webkit-gtk/Manifest | 2 - net-libs/webkit-gtk/webkit-gtk-2.34.3.ebuild | 272 --------------------------- net-libs/webkit-gtk/webkit-gtk-2.34.4.ebuild | 272 --------------------------- 3 files changed, 546 deletions(-)
All done, thanks!