-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 - ------------------------------------------------------------------------- Debian Security Advisory DSA-5220-1 security@debian.org https://www.debian.org/security/ Alberto Garcia August 27, 2022 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : wpewebkit CVE ID : CVE-2022-32893 The following vulnerabilities have been discovered in the WPE WebKit web engine: CVE-2022-32893 An anonymous researcher discovered that processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited. For the stable distribution (bullseye), this problem has been fixed in version 2.36.7-1~deb11u1. We recommend that you upgrade your wpewebkit packages. For the detailed security status of wpewebkit please refer to its security tracker page at: https://security-tracker.debian.org/tracker/wpewebkit Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEYrwugQBKzlHMYFizAAyEYu0C2AIFAmMKLTUACgkQAAyEYu0C 2AKL/Q//W6GZ15eZxPN+Q/Y32IVhp6eIt9Hs+9izXmKhNu2WLjNdufuWfB+x7o/C 7U1ey6UwjDXMxdwtClRuxFR1LXcmI4rMsqy36OIAZuc8fZyp6lYR9neTyVjnHkyH ycrCBYsRjJlg0nOcM8vPX5zMk1HjWVwVgp49Ld5BFOV9ZSefx5EYOJb5NsDdI1jI Ks0M87j/vwcwVEBtGPtQ0LhDFM6KodJnSyfXrrBianHsET/7s8gUM9X3okV+tggo nzP3wqVeG1evjZ5gOtUcCZPKQd351LzLuqG86YUTIIeEhLDzW2QZzZESrVkZTgZV NE81icQOk4seEAJr7tRchpfMruaq/67VqldNblcbAk1/Ls4cCKnfYOCbpiP+47IM wehzhp1BjiOduiYdEFeJ+CmkWsRPmQBdmOF6vE0yWQ+lMFA8LS9RgJa61HlRa5CC 7DiFNs9+turxeCo9mkF8r8m/EElh3nsyOB1dxoUkIrXGomm3e596u+jt4yE0eilW +5WDLQOQ84/ajrp5XLuMuESJURzivJuLFhgVjIOFR5A3UeZY8uvEdFztkpnS56hP 8AGJoR07F7UT4dI4S6Kn48IulWkgQR6XwjF14aqyLqeBtCO0byk/93RG4raEvemY UBLtFqspKbx12wqp5tk5j1cMPwMD/ikK7g5FHLTwyotqLoVh4qA= =BKwf -----END PGP SIGNATURE-----