Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:23970 - Security Advisory
Issued:
2025-12-24
Updated:
2025-12-24

RHSA-2025:23970 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: webkit2gtk3 security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for webkit2gtk3 is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

WebKitGTK is the port of the portable web rendering engine WebKit to the GTK platform.

Security Fix(es):

  • webkitgtk: webkitgtk: Use-after-free due to improper memory management (CVE-2025-43529)
  • webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash (CVE-2025-43501)
  • webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash (CVE-2025-43531)
  • webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash (CVE-2025-43535)
  • webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash (CVE-2025-43536)
  • webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash (CVE-2025-43541)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0 s390x

Fixes

  • BZ - 2423166 - CVE-2025-43529 webkitgtk: webkitgtk: Use-after-free due to improper memory management
  • BZ - 2423185 - CVE-2025-43501 webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash
  • BZ - 2423187 - CVE-2025-43531 webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash
  • BZ - 2423188 - CVE-2025-43535 webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash
  • BZ - 2423190 - CVE-2025-43536 webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash
  • BZ - 2423191 - CVE-2025-43541 webkitgtk: Processing maliciously crafted web content may lead to an unexpected Safari crash

CVEs

  • CVE-2025-14174
  • CVE-2025-43501
  • CVE-2025-43529
  • CVE-2025-43531
  • CVE-2025-43535
  • CVE-2025-43536
  • CVE-2025-43541

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0

SRPM
webkit2gtk3-2.50.4-1.el9_0.src.rpm SHA-256: eb1623ecdba379985550a78429713c2cd1d873cad085a15ce9869a19e5397017
ppc64le
webkit2gtk3-2.50.4-1.el9_0.ppc64le.rpm SHA-256: c58b30e2dbaa95ddd63da7b0e9ffe67cf90667a6ea0ea2c53179ebf6255113ce
webkit2gtk3-debuginfo-2.50.4-1.el9_0.ppc64le.rpm SHA-256: 72ab4b7bca1000545c0329159f452a84e768db084db20a2571410bc19293db9b
webkit2gtk3-debugsource-2.50.4-1.el9_0.ppc64le.rpm SHA-256: e97aa486d5983b5ffeb7a58949916910c799c16429f6db11e5b163c28bf24e39
webkit2gtk3-devel-2.50.4-1.el9_0.ppc64le.rpm SHA-256: 2ef7730e847f918c6b75b8dfe028f9a1663a7a20a41b152c0656b12926ee4c3d
webkit2gtk3-devel-debuginfo-2.50.4-1.el9_0.ppc64le.rpm SHA-256: 9696e5904bc5e87319bc256e1839517283c55061c5f9da8c17b2be9c26fe145c
webkit2gtk3-jsc-2.50.4-1.el9_0.ppc64le.rpm SHA-256: 315813de87de435859275e64e98a79b7deabe8d9c9d01b50789efb260ae8274a
webkit2gtk3-jsc-debuginfo-2.50.4-1.el9_0.ppc64le.rpm SHA-256: c4e2fd86dea5d576a721690a8d44a6156a3ffb224b8bbab0c15044ac25e1f1e5
webkit2gtk3-jsc-devel-2.50.4-1.el9_0.ppc64le.rpm SHA-256: e24b005fcdc8e5c0edf2b9f80624515a6b93d457348e05d06583fe88221698cc
webkit2gtk3-jsc-devel-debuginfo-2.50.4-1.el9_0.ppc64le.rpm SHA-256: 9fd4ffaf6ae14a0ba7d375a05e82905600a41cb6891945a1eab79e23210a2930

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0

SRPM
webkit2gtk3-2.50.4-1.el9_0.src.rpm SHA-256: eb1623ecdba379985550a78429713c2cd1d873cad085a15ce9869a19e5397017
x86_64
webkit2gtk3-2.50.4-1.el9_0.i686.rpm SHA-256: 43b4b040d5c8f7b645d83f254788d15ba871dd63723d81ff48b52cc4561717fe
webkit2gtk3-2.50.4-1.el9_0.x86_64.rpm SHA-256: 15fa9fb0c8c269cfd7f529987063cf78e06e6396691293ffeca06a1569d2ca5b
webkit2gtk3-debuginfo-2.50.4-1.el9_0.i686.rpm SHA-256: ec3d54c6a597b6a11edbb41eb10bde75f495962e3a3bc78f1deeb75f3475ff31
webkit2gtk3-debuginfo-2.50.4-1.el9_0.x86_64.rpm SHA-256: d738f25abb8b4619b0b525bf2866d6ed092f9a9f5b25e0f9005afe45f626c5a2
webkit2gtk3-debugsource-2.50.4-1.el9_0.i686.rpm SHA-256: 4fd4c46ff1ca00fd4c2519a38569e2bdaf9c438d9fd3b7bdb556dda7dad59787
webkit2gtk3-debugsource-2.50.4-1.el9_0.x86_64.rpm SHA-256: d1b85c2c23f598233a598132df45fabe0d008d04e50ff408cebbcbb9d16a8cf9
webkit2gtk3-devel-2.50.4-1.el9_0.i686.rpm SHA-256: fd006b640c619920bcde4a3b326a3aa2c9c38b1ae8d3c025a7e4317356df4415
webkit2gtk3-devel-2.50.4-1.el9_0.x86_64.rpm SHA-256: 335a068c08a360fc924eb60cc90847c379a719acd102d178cf5141ac06377211
webkit2gtk3-devel-debuginfo-2.50.4-1.el9_0.i686.rpm SHA-256: 0ac8ed779c535be18250262e1a0aadac3a9acc18ef07738db5b423b6b3083351
webkit2gtk3-devel-debuginfo-2.50.4-1.el9_0.x86_64.rpm SHA-256: 93058440539a233f83f00cd960bfb477c089c93e2d278290fdcfa411593d9c37
webkit2gtk3-jsc-2.50.4-1.el9_0.i686.rpm SHA-256: 857aef89da9a7ce37f27d5b3186a55ca6fd4eb6495881e5bbd269862eea683e9
webkit2gtk3-jsc-2.50.4-1.el9_0.x86_64.rpm SHA-256: 6b41ba90839321309eb38b52c3d35e563c8484d41767bb9db1fb0599823d3cb9
webkit2gtk3-jsc-debuginfo-2.50.4-1.el9_0.i686.rpm SHA-256: 18104f426440684f8818a129e6c3304b6c06500a7ae95ba45a2faa99d1806796
webkit2gtk3-jsc-debuginfo-2.50.4-1.el9_0.x86_64.rpm SHA-256: 2c9c56496f4845fbf1ea1a99696efc95573ee2c8c871890e318d9a6cb37e2955
webkit2gtk3-jsc-devel-2.50.4-1.el9_0.i686.rpm SHA-256: e617c967f96afade1344e61dcf3b7bbd6075c93afa6e5c77c1f97410af6f72c2
webkit2gtk3-jsc-devel-2.50.4-1.el9_0.x86_64.rpm SHA-256: fab08e57988dc4bc77f7281ebe52248578c9d928fecfd08eaf70b5a455716408
webkit2gtk3-jsc-devel-debuginfo-2.50.4-1.el9_0.i686.rpm SHA-256: 5611e376e678230b4ca9cfd7ad399fd19316d941d47bb70c9dc43ae8b4e3c491
webkit2gtk3-jsc-devel-debuginfo-2.50.4-1.el9_0.x86_64.rpm SHA-256: e04feafdccd1f3e93d4339d9f3b006fa4e9811952b70b83b486a05a525d0e1cf

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0

SRPM
webkit2gtk3-2.50.4-1.el9_0.src.rpm SHA-256: eb1623ecdba379985550a78429713c2cd1d873cad085a15ce9869a19e5397017
aarch64
webkit2gtk3-2.50.4-1.el9_0.aarch64.rpm SHA-256: d00a18346db4a58d8dd7f056f7b80a834d17bd881b70d043d0fd30185f3e820f
webkit2gtk3-debuginfo-2.50.4-1.el9_0.aarch64.rpm SHA-256: c506ac70aa433495a92466d0266e45eea101742fdcc01f527a78af9c4545ad41
webkit2gtk3-debugsource-2.50.4-1.el9_0.aarch64.rpm SHA-256: 9b526a521792112893bac7bb92039a54fae221ff834e14b7a9ba0338196e3adb
webkit2gtk3-devel-2.50.4-1.el9_0.aarch64.rpm SHA-256: aec5c852c43a180881d0bf0931fe1932dfcc54cd918a504ee881615c52265cb1
webkit2gtk3-devel-debuginfo-2.50.4-1.el9_0.aarch64.rpm SHA-256: 956503f29b1b6701296e35b412e1e92b9c91a7ee097076b46e60bcdf5c4806d6
webkit2gtk3-jsc-2.50.4-1.el9_0.aarch64.rpm SHA-256: 07e6667ad7ea41d2f520113274e8695a19bb6fbdfe35e71812a88f6e7330759a
webkit2gtk3-jsc-debuginfo-2.50.4-1.el9_0.aarch64.rpm SHA-256: 72f1de1a9558caff169ee264e20a736fd951619e2d7df1661da176c52bde1424
webkit2gtk3-jsc-devel-2.50.4-1.el9_0.aarch64.rpm SHA-256: e143af3004737c869334709544c3b0611b4439bfc5c9dc3e6fcf9402fe398c79
webkit2gtk3-jsc-devel-debuginfo-2.50.4-1.el9_0.aarch64.rpm SHA-256: f9ecf23f01cbdddb06d366e9e223bf300b6681ea8950976814267d8b6d6e218f

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0

SRPM
webkit2gtk3-2.50.4-1.el9_0.src.rpm SHA-256: eb1623ecdba379985550a78429713c2cd1d873cad085a15ce9869a19e5397017
s390x
webkit2gtk3-2.50.4-1.el9_0.s390x.rpm SHA-256: 07b7b881c2f249f694e3e8b27c41893071f08b6740e1ac90107027596a61d4bf
webkit2gtk3-debuginfo-2.50.4-1.el9_0.s390x.rpm SHA-256: 12fcf0608a2ff56d0dda03846db5d2711fda71d09c1b28c775ba74642d5d1457
webkit2gtk3-debugsource-2.50.4-1.el9_0.s390x.rpm SHA-256: 08246824c094e48d9ee275ae7d61dd838d27ad0c41e7410df4aaa6ed5c0ca265
webkit2gtk3-devel-2.50.4-1.el9_0.s390x.rpm SHA-256: c404ea51c2e330c38f4bdd4a9450b7ae2efa07c9a02cded739ff2e91e3435301
webkit2gtk3-devel-debuginfo-2.50.4-1.el9_0.s390x.rpm SHA-256: 7039f9ac078fe064f363283ac65ef1ee4bbff3ff37bf96b867ffd48c0ebbc751
webkit2gtk3-jsc-2.50.4-1.el9_0.s390x.rpm SHA-256: fc75a26ef2b50a9480049c83b8b0d718baf0565478c58b71c342c402d7167129
webkit2gtk3-jsc-debuginfo-2.50.4-1.el9_0.s390x.rpm SHA-256: 2e949a83d34d3bf0bdbe406473cdad8744a0bc32c81f19f8e8d33536e365b370
webkit2gtk3-jsc-devel-2.50.4-1.el9_0.s390x.rpm SHA-256: d17f0bf26097b2c25812ae60f5410e757f07b9f9ace23b2403767a5072a5e127
webkit2gtk3-jsc-devel-debuginfo-2.50.4-1.el9_0.s390x.rpm SHA-256: 4606f778fbf0535caf5405ad11d6deaf8435dc1f08e1a83e72ac695f7864c466

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility