Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Containers
  • Support Cases
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Containers
  • Support Cases
  • Products & Services

    Products

    Support

    • Production Support
    • Development Support
    • Product Life Cycles

    Services

    • Consulting
    • Technical Account Management
    • Training & Certifications

    Documentation

    • Red Hat Enterprise Linux
    • Red Hat JBoss Enterprise Application Platform
    • Red Hat OpenStack Platform
    • Red Hat OpenShift Container Platform
    All Documentation

    Ecosystem Catalog

    • Red Hat Partner Ecosystem
    • Partner Resources
  • Tools

    Tools

    • Troubleshoot a product issue
    • Packages
    • Errata

    Customer Portal Labs

    • Configuration
    • Deployment
    • Security
    • Troubleshoot
    All labs

    Red Hat Insights

    Increase visibility into IT operations to detect and resolve technical issues before they impact your business.

    Learn More
    Go to Insights
  • Security

    Red Hat Product Security Center

    Engage with our Red Hat Product Security team, access security updates, and ensure your environments are not exposed to any known security vulnerabilities.

    Product Security Center

    Security Updates

    • Security Advisories
    • Red Hat CVE Database
    • Security Labs

    Keep your systems secure with Red Hat's specialized responses to security vulnerabilities.

    View Responses

    Resources

    • Security Blog
    • Security Measurement
    • Severity Ratings
    • Backporting Policies
    • Product Signing (GPG) Keys
  • Community

    Customer Portal Community

    • Discussions
    • Private Groups
    Community Activity

    Customer Events

    • Red Hat Convergence
    • Red Hat Summit

    Stories

    • Red Hat Subscription Value
    • You Asked. We Acted.
    • Open Source Communities
Or troubleshoot an issue.

Select Your Language

  • English
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Virtualization
  • Red Hat Identity Management
  • Red Hat Directory Server
  • Red Hat Certificate System
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Update Infrastructure
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat CloudForms
  • Red Hat OpenStack Platform
  • Red Hat OpenShift Container Platform
  • Red Hat OpenShift Data Science
  • Red Hat OpenShift Online
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat Single Sign On
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Thorntail
  • Red Hat build of Eclipse Vert.x
  • Red Hat build of OpenJDK
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Integration
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
  • Red Hat JBoss Data Virtualization
  • Red Hat Process Automation
  • Red Hat Process Automation Manager
  • Red Hat Decision Manager
All Products
Red Hat Product Errata RHSA-2022:0059 - Security Advisory
Issued:
2022-01-11
Updated:
2022-01-11

RHSA-2022:0059 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: webkitgtk4 security update

Type/Severity

Security Advisory: Moderate

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for webkitgtk4 is now available for Red Hat Enterprise Linux 7.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

WebKitGTK is the port of the portable web rendering engine WebKit to the GTK platform.

Security Fix(es):

  • webkitgtk: Use-after-free leading to arbitrary code execution (CVE-2021-30858)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server 7 x86_64
  • Red Hat Enterprise Linux Workstation 7 x86_64
  • Red Hat Enterprise Linux Desktop 7 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 7 s390x
  • Red Hat Enterprise Linux for Power, big endian 7 ppc64
  • Red Hat Enterprise Linux for Scientific Computing 7 x86_64
  • Red Hat Enterprise Linux for Power, little endian 7 ppc64le

Fixes

  • BZ - 2006099 - CVE-2021-30858 webkitgtk: Use-after-free leading to arbitrary code execution

CVEs

  • CVE-2021-30858

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server 7

SRPM
webkitgtk4-2.28.2-3.el7.src.rpm SHA-256: 4ac09fb5ab8111dce75599da7fe9434829d6628bc91c6f694bd324675fd4e984
x86_64
webkitgtk4-2.28.2-3.el7.i686.rpm SHA-256: be7b25a3cbb14a851d82298638c7f503ca89f945c9e713e55bc5a579f31bf6d7
webkitgtk4-2.28.2-3.el7.x86_64.rpm SHA-256: 41f5b1151cd848a81e73a8c7dd814e2f363b91b050774eee71410614f4bc7f5a
webkitgtk4-debuginfo-2.28.2-3.el7.i686.rpm SHA-256: 010cd1e9ab12062729d41e8fb6f0eba44318ae17a4d9ef0523d97e6b5adb416e
webkitgtk4-debuginfo-2.28.2-3.el7.x86_64.rpm SHA-256: 16d1402a17c8c834fab84b28523edee69bb5c40008c24f2801b20b64873c100f
webkitgtk4-devel-2.28.2-3.el7.i686.rpm SHA-256: 8374e507f821cb2ea0e488f60b5e4430c9ac9bff42bd6172e7d6f85f0c1da243
webkitgtk4-devel-2.28.2-3.el7.x86_64.rpm SHA-256: 8fe5174d67bcc92ab82da1a3f495d216565fd06bf48251901096e4162b17bf8f
webkitgtk4-doc-2.28.2-3.el7.noarch.rpm SHA-256: fafc58d2e95df308e7dff8d7b4d413f8ee136172c22c83063ec60bf005863ea6
webkitgtk4-jsc-2.28.2-3.el7.i686.rpm SHA-256: a057ec92e56275b9c950d52b62de65f730f2f3426f7f6ef45256104802ffc84c
webkitgtk4-jsc-2.28.2-3.el7.x86_64.rpm SHA-256: 14aef4ce766ac683a8187f21c78ceec3b9180efa1e584c3b98f9f7ad9e241f27
webkitgtk4-jsc-devel-2.28.2-3.el7.i686.rpm SHA-256: ab7fb224c8e7dd81021588af9efec4992f8cc870f7992fcae0ce53a02342b0b0
webkitgtk4-jsc-devel-2.28.2-3.el7.x86_64.rpm SHA-256: ea36bd82a53adc2ed6a6ac3edd883b76472986e273c8a564b07a5830b41f0672

Red Hat Enterprise Linux Workstation 7

SRPM
webkitgtk4-2.28.2-3.el7.src.rpm SHA-256: 4ac09fb5ab8111dce75599da7fe9434829d6628bc91c6f694bd324675fd4e984
x86_64
webkitgtk4-2.28.2-3.el7.i686.rpm SHA-256: be7b25a3cbb14a851d82298638c7f503ca89f945c9e713e55bc5a579f31bf6d7
webkitgtk4-2.28.2-3.el7.x86_64.rpm SHA-256: 41f5b1151cd848a81e73a8c7dd814e2f363b91b050774eee71410614f4bc7f5a
webkitgtk4-debuginfo-2.28.2-3.el7.i686.rpm SHA-256: 010cd1e9ab12062729d41e8fb6f0eba44318ae17a4d9ef0523d97e6b5adb416e
webkitgtk4-debuginfo-2.28.2-3.el7.x86_64.rpm SHA-256: 16d1402a17c8c834fab84b28523edee69bb5c40008c24f2801b20b64873c100f
webkitgtk4-devel-2.28.2-3.el7.i686.rpm SHA-256: 8374e507f821cb2ea0e488f60b5e4430c9ac9bff42bd6172e7d6f85f0c1da243
webkitgtk4-devel-2.28.2-3.el7.x86_64.rpm SHA-256: 8fe5174d67bcc92ab82da1a3f495d216565fd06bf48251901096e4162b17bf8f
webkitgtk4-doc-2.28.2-3.el7.noarch.rpm SHA-256: fafc58d2e95df308e7dff8d7b4d413f8ee136172c22c83063ec60bf005863ea6
webkitgtk4-jsc-2.28.2-3.el7.i686.rpm SHA-256: a057ec92e56275b9c950d52b62de65f730f2f3426f7f6ef45256104802ffc84c
webkitgtk4-jsc-2.28.2-3.el7.x86_64.rpm SHA-256: 14aef4ce766ac683a8187f21c78ceec3b9180efa1e584c3b98f9f7ad9e241f27
webkitgtk4-jsc-devel-2.28.2-3.el7.i686.rpm SHA-256: ab7fb224c8e7dd81021588af9efec4992f8cc870f7992fcae0ce53a02342b0b0
webkitgtk4-jsc-devel-2.28.2-3.el7.x86_64.rpm SHA-256: ea36bd82a53adc2ed6a6ac3edd883b76472986e273c8a564b07a5830b41f0672

Red Hat Enterprise Linux Desktop 7

SRPM
webkitgtk4-2.28.2-3.el7.src.rpm SHA-256: 4ac09fb5ab8111dce75599da7fe9434829d6628bc91c6f694bd324675fd4e984
x86_64
webkitgtk4-2.28.2-3.el7.i686.rpm SHA-256: be7b25a3cbb14a851d82298638c7f503ca89f945c9e713e55bc5a579f31bf6d7
webkitgtk4-2.28.2-3.el7.x86_64.rpm SHA-256: 41f5b1151cd848a81e73a8c7dd814e2f363b91b050774eee71410614f4bc7f5a
webkitgtk4-debuginfo-2.28.2-3.el7.i686.rpm SHA-256: 010cd1e9ab12062729d41e8fb6f0eba44318ae17a4d9ef0523d97e6b5adb416e
webkitgtk4-debuginfo-2.28.2-3.el7.i686.rpm SHA-256: 010cd1e9ab12062729d41e8fb6f0eba44318ae17a4d9ef0523d97e6b5adb416e
webkitgtk4-debuginfo-2.28.2-3.el7.x86_64.rpm SHA-256: 16d1402a17c8c834fab84b28523edee69bb5c40008c24f2801b20b64873c100f
webkitgtk4-debuginfo-2.28.2-3.el7.x86_64.rpm SHA-256: 16d1402a17c8c834fab84b28523edee69bb5c40008c24f2801b20b64873c100f
webkitgtk4-devel-2.28.2-3.el7.i686.rpm SHA-256: 8374e507f821cb2ea0e488f60b5e4430c9ac9bff42bd6172e7d6f85f0c1da243
webkitgtk4-devel-2.28.2-3.el7.x86_64.rpm SHA-256: 8fe5174d67bcc92ab82da1a3f495d216565fd06bf48251901096e4162b17bf8f
webkitgtk4-doc-2.28.2-3.el7.noarch.rpm SHA-256: fafc58d2e95df308e7dff8d7b4d413f8ee136172c22c83063ec60bf005863ea6
webkitgtk4-jsc-2.28.2-3.el7.i686.rpm SHA-256: a057ec92e56275b9c950d52b62de65f730f2f3426f7f6ef45256104802ffc84c
webkitgtk4-jsc-2.28.2-3.el7.x86_64.rpm SHA-256: 14aef4ce766ac683a8187f21c78ceec3b9180efa1e584c3b98f9f7ad9e241f27
webkitgtk4-jsc-devel-2.28.2-3.el7.i686.rpm SHA-256: ab7fb224c8e7dd81021588af9efec4992f8cc870f7992fcae0ce53a02342b0b0
webkitgtk4-jsc-devel-2.28.2-3.el7.x86_64.rpm SHA-256: ea36bd82a53adc2ed6a6ac3edd883b76472986e273c8a564b07a5830b41f0672

Red Hat Enterprise Linux for IBM z Systems 7

SRPM
webkitgtk4-2.28.2-3.el7.src.rpm SHA-256: 4ac09fb5ab8111dce75599da7fe9434829d6628bc91c6f694bd324675fd4e984
s390x
webkitgtk4-2.28.2-3.el7.s390.rpm SHA-256: 2a6b7c8dab3d96671b629ec173d75f1720e3f7ec30b2ae2cb7d6584f002f1f7f
webkitgtk4-2.28.2-3.el7.s390x.rpm SHA-256: 35acfe3f90bb102dd1a7efc33de95f7384314f3d0156d95a594a472ac2e637ba
webkitgtk4-debuginfo-2.28.2-3.el7.s390.rpm SHA-256: b03c2e3a210faf92b66b2c2fb89d543368581aa545bc4a4d40415b9f7c4c4a66
webkitgtk4-debuginfo-2.28.2-3.el7.s390.rpm SHA-256: b03c2e3a210faf92b66b2c2fb89d543368581aa545bc4a4d40415b9f7c4c4a66
webkitgtk4-debuginfo-2.28.2-3.el7.s390x.rpm SHA-256: 2dbc43b0ee15e1d03f3aa2dbf91cc2cc4982785af9cb295854f12ad1fc0e4391
webkitgtk4-debuginfo-2.28.2-3.el7.s390x.rpm SHA-256: 2dbc43b0ee15e1d03f3aa2dbf91cc2cc4982785af9cb295854f12ad1fc0e4391
webkitgtk4-devel-2.28.2-3.el7.s390.rpm SHA-256: cb49ead70a9d6a1dd9c5f8090ed584400aa4738101839d8515bab470339be7a1
webkitgtk4-devel-2.28.2-3.el7.s390x.rpm SHA-256: 63e5b94d4f125a25f6f27d45fadb9d03278e7d9dadbb9644e3378db3b2af5d89
webkitgtk4-doc-2.28.2-3.el7.noarch.rpm SHA-256: fafc58d2e95df308e7dff8d7b4d413f8ee136172c22c83063ec60bf005863ea6
webkitgtk4-jsc-2.28.2-3.el7.s390.rpm SHA-256: 4b2ddacad22fb1eb148196029dda69cf45572ea451e95743e8b99fa1b4ccab6f
webkitgtk4-jsc-2.28.2-3.el7.s390x.rpm SHA-256: 089c9e50a3d1b395c5dee82451f47ab712370c5fe46b1e098ab6b40ffea553f6
webkitgtk4-jsc-devel-2.28.2-3.el7.s390.rpm SHA-256: 36a1e1feb42aa49ecada70513df72b93d3058cfb5e7ff219203fba0dc6a67406
webkitgtk4-jsc-devel-2.28.2-3.el7.s390x.rpm SHA-256: 144162cd7db5a6ee7cbb177afc29bceeea91c14ec6236547bc98e2a5df24037b

Red Hat Enterprise Linux for Power, big endian 7

SRPM
webkitgtk4-2.28.2-3.el7.src.rpm SHA-256: 4ac09fb5ab8111dce75599da7fe9434829d6628bc91c6f694bd324675fd4e984
ppc64
webkitgtk4-2.28.2-3.el7.ppc.rpm SHA-256: 0591227468a7f5a7fc9c05c1082e0e5d8430afb3e5a29157aff706df45b26586
webkitgtk4-2.28.2-3.el7.ppc64.rpm SHA-256: a1f8a6905ac5aeabad518fc896d8771bf7771fa891873889e06c5eb152a4dc93
webkitgtk4-debuginfo-2.28.2-3.el7.ppc.rpm SHA-256: ba0024c706d4b1af3ecd030b0e7af7dee5fcfb4fce0951314d39d66abd3a76ad
webkitgtk4-debuginfo-2.28.2-3.el7.ppc.rpm SHA-256: ba0024c706d4b1af3ecd030b0e7af7dee5fcfb4fce0951314d39d66abd3a76ad
webkitgtk4-debuginfo-2.28.2-3.el7.ppc64.rpm SHA-256: b069f5a413fa1f8dc520c2e1d0a56564d3c0f4c95c1b8d8fa8e746c994d6ff0a
webkitgtk4-debuginfo-2.28.2-3.el7.ppc64.rpm SHA-256: b069f5a413fa1f8dc520c2e1d0a56564d3c0f4c95c1b8d8fa8e746c994d6ff0a
webkitgtk4-devel-2.28.2-3.el7.ppc.rpm SHA-256: 7f95a572e1740d7ba389ec3e6323bc3ece2d6ccb7b64b593f8e457bb1140bb6e
webkitgtk4-devel-2.28.2-3.el7.ppc64.rpm SHA-256: 52c74e7cfd1b2933a2e3d0cd63f2b32056f498abab9a9aab11fcaf193564acca
webkitgtk4-doc-2.28.2-3.el7.noarch.rpm SHA-256: fafc58d2e95df308e7dff8d7b4d413f8ee136172c22c83063ec60bf005863ea6
webkitgtk4-jsc-2.28.2-3.el7.ppc.rpm SHA-256: 248e4041e9b4cbebf6e67fddf73367e87d9c056cc5d15da2a46b90d026413cdf
webkitgtk4-jsc-2.28.2-3.el7.ppc64.rpm SHA-256: 30f7b44121ad2f13c1929939b04f3f1c29cf95bdf71fd7540867891bcbfef14f
webkitgtk4-jsc-devel-2.28.2-3.el7.ppc.rpm SHA-256: b0389d0fa1b6c123fdb35a02689eb9da9bfe8d9014e2a2790792e48c0bafb3a6
webkitgtk4-jsc-devel-2.28.2-3.el7.ppc64.rpm SHA-256: 2f02aa5173418bcbe05bf4ebdbdb8a361050568f1170a2f6f72425e599d99ca9

Red Hat Enterprise Linux for Scientific Computing 7

SRPM
webkitgtk4-2.28.2-3.el7.src.rpm SHA-256: 4ac09fb5ab8111dce75599da7fe9434829d6628bc91c6f694bd324675fd4e984
x86_64
webkitgtk4-2.28.2-3.el7.i686.rpm SHA-256: be7b25a3cbb14a851d82298638c7f503ca89f945c9e713e55bc5a579f31bf6d7
webkitgtk4-2.28.2-3.el7.x86_64.rpm SHA-256: 41f5b1151cd848a81e73a8c7dd814e2f363b91b050774eee71410614f4bc7f5a
webkitgtk4-debuginfo-2.28.2-3.el7.i686.rpm SHA-256: 010cd1e9ab12062729d41e8fb6f0eba44318ae17a4d9ef0523d97e6b5adb416e
webkitgtk4-debuginfo-2.28.2-3.el7.i686.rpm SHA-256: 010cd1e9ab12062729d41e8fb6f0eba44318ae17a4d9ef0523d97e6b5adb416e
webkitgtk4-debuginfo-2.28.2-3.el7.x86_64.rpm SHA-256: 16d1402a17c8c834fab84b28523edee69bb5c40008c24f2801b20b64873c100f
webkitgtk4-debuginfo-2.28.2-3.el7.x86_64.rpm SHA-256: 16d1402a17c8c834fab84b28523edee69bb5c40008c24f2801b20b64873c100f
webkitgtk4-devel-2.28.2-3.el7.i686.rpm SHA-256: 8374e507f821cb2ea0e488f60b5e4430c9ac9bff42bd6172e7d6f85f0c1da243
webkitgtk4-devel-2.28.2-3.el7.x86_64.rpm SHA-256: 8fe5174d67bcc92ab82da1a3f495d216565fd06bf48251901096e4162b17bf8f
webkitgtk4-doc-2.28.2-3.el7.noarch.rpm SHA-256: fafc58d2e95df308e7dff8d7b4d413f8ee136172c22c83063ec60bf005863ea6
webkitgtk4-jsc-2.28.2-3.el7.i686.rpm SHA-256: a057ec92e56275b9c950d52b62de65f730f2f3426f7f6ef45256104802ffc84c
webkitgtk4-jsc-2.28.2-3.el7.x86_64.rpm SHA-256: 14aef4ce766ac683a8187f21c78ceec3b9180efa1e584c3b98f9f7ad9e241f27
webkitgtk4-jsc-devel-2.28.2-3.el7.i686.rpm SHA-256: ab7fb224c8e7dd81021588af9efec4992f8cc870f7992fcae0ce53a02342b0b0
webkitgtk4-jsc-devel-2.28.2-3.el7.x86_64.rpm SHA-256: ea36bd82a53adc2ed6a6ac3edd883b76472986e273c8a564b07a5830b41f0672

Red Hat Enterprise Linux for Power, little endian 7

SRPM
webkitgtk4-2.28.2-3.el7.src.rpm SHA-256: 4ac09fb5ab8111dce75599da7fe9434829d6628bc91c6f694bd324675fd4e984
ppc64le
webkitgtk4-2.28.2-3.el7.ppc64le.rpm SHA-256: 1708a2b98f09849daf9febc68c9faab53a9968a2cb21e3f85897fdf39b870175
webkitgtk4-debuginfo-2.28.2-3.el7.ppc64le.rpm SHA-256: ccc85d14e7fff903e9c6da8bd67afb7dd188e1c2cabd2cd872b95f96f8811a39
webkitgtk4-devel-2.28.2-3.el7.ppc64le.rpm SHA-256: 61f578b3e2782bef00a40e2c95b2b5288506565921f051b13b798bdc5f07cdf8
webkitgtk4-doc-2.28.2-3.el7.noarch.rpm SHA-256: fafc58d2e95df308e7dff8d7b4d413f8ee136172c22c83063ec60bf005863ea6
webkitgtk4-jsc-2.28.2-3.el7.ppc64le.rpm SHA-256: 252ceb8d464b65b7446ba356c9a9da3f4d79467c5e4310bffc0ec86fa8ac435d
webkitgtk4-jsc-devel-2.28.2-3.el7.ppc64le.rpm SHA-256: b0c58bbfe86fba3159186adfb275e8ffb90218da7f1d3214523d5bbfcd0f5bc2

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

About

  • Red Hat Subscription Value
  • About Red Hat
  • Red Hat Jobs
Copyright © 2023 Red Hat, Inc.
  • Privacy Statement
  • Customer Portal Terms of Use
  • All Policies and Guidelines
Red Hat Summit
Twitter