Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:3002 - Security Advisory
Issued:
2025-03-18
Updated:
2025-03-18

RHSA-2025:3002 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: webkit2gtk3 security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for webkit2gtk3 is now available for Red Hat Enterprise Linux 8.2 Advanced Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

WebKitGTK is the port of the portable web rendering engine WebKit to the GTK platform.

Security Fix(es):

  • webkitgtk: out-of-bounds write vulnerability (CVE-2025-24201)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - AUS 8.2 x86_64

Fixes

  • BZ - 2351802 - CVE-2025-24201 webkitgtk: out-of-bounds write vulnerability

CVEs

  • CVE-2025-24201

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - AUS 8.2

SRPM
webkit2gtk3-2.46.6-2.el8_2.src.rpm SHA-256: 9f335ad5475975eaad6eba61b5b737e537c059638985a1ccddde78455095b062
x86_64
webkit2gtk3-2.46.6-2.el8_2.i686.rpm SHA-256: dddfac53e8250840a406cca5414aa5709396eadd4358859b4a5ddf7ac92e50fa
webkit2gtk3-2.46.6-2.el8_2.x86_64.rpm SHA-256: ef4cdf1f1fc0eb6a0377d0d6f45a8c06a701abbb65b0c6c1000222b00e2c0918
webkit2gtk3-debuginfo-2.46.6-2.el8_2.i686.rpm SHA-256: 3f0fb8072b69d8cd746a9001ee10357ebff3104b1c7dcd2a4fefdaae08e9b21a
webkit2gtk3-debuginfo-2.46.6-2.el8_2.x86_64.rpm SHA-256: 46dd80218d466c59fa0da79c0c3aed1b27a7778cefa1f828888ea6fecb8cdcb7
webkit2gtk3-debugsource-2.46.6-2.el8_2.i686.rpm SHA-256: d3c77e199d16c817e88e051170f0a8e91c19c182dce2536eb17d447b497e37ae
webkit2gtk3-debugsource-2.46.6-2.el8_2.x86_64.rpm SHA-256: fcbc82e3ca9b65603fee259f862d68b3005de76e8eb3d92d360e5c58d25e4cf7
webkit2gtk3-devel-2.46.6-2.el8_2.i686.rpm SHA-256: 8cbb384265ebe5b9dd2699dd23be96a869932fda2386214da3d0c4e90e5a55c7
webkit2gtk3-devel-2.46.6-2.el8_2.x86_64.rpm SHA-256: 9a75a53d63ea603b745bea79a238bc96315e731af749d07790f1d5a4114ab7e8
webkit2gtk3-devel-debuginfo-2.46.6-2.el8_2.i686.rpm SHA-256: cae978218c0398f3c00f45e79ae8d8c76af81d96dae17d55ee4968bd5fad90cc
webkit2gtk3-devel-debuginfo-2.46.6-2.el8_2.x86_64.rpm SHA-256: b09a1ffb18975ad7281fc7d9a99e8152f694aa3de0014e82acdbaff5d34a1077
webkit2gtk3-jsc-2.46.6-2.el8_2.i686.rpm SHA-256: c08ba997c0b3f000b07e4d255fe7d708e3b00d5b14d27282ce05c84b671396ad
webkit2gtk3-jsc-2.46.6-2.el8_2.x86_64.rpm SHA-256: ee898ebdce177515c494cefab8a6f71273215b515a8c29db101f0ea8fdf701ab
webkit2gtk3-jsc-debuginfo-2.46.6-2.el8_2.i686.rpm SHA-256: 23c0b8a17c47e70e7313bec21313fb8623e0a3465a5234b28f7aa5ef03b700f6
webkit2gtk3-jsc-debuginfo-2.46.6-2.el8_2.x86_64.rpm SHA-256: 23614eae71fc9d795bf69f869206600b8d1bdccfd7b24d6abaeb675feff8a38e
webkit2gtk3-jsc-devel-2.46.6-2.el8_2.i686.rpm SHA-256: ad6eb9072ca17e7b7fb12fa26c09c5370466f0515097dc82ba12a759f81f9299
webkit2gtk3-jsc-devel-2.46.6-2.el8_2.x86_64.rpm SHA-256: aeec995e391f57db58879249db5547581b4ab0ed8a4701aeabc4348b3cac930f
webkit2gtk3-jsc-devel-debuginfo-2.46.6-2.el8_2.i686.rpm SHA-256: fbe6e835b0c3c45b1fa19c8dcdb3a6abe97c9cd6308e1b44b093a85468cf7b42
webkit2gtk3-jsc-devel-debuginfo-2.46.6-2.el8_2.x86_64.rpm SHA-256: 84ef43c379f076da2784fbc31ccb6ba85eb6b1c8b6b9cf9b7d64aa3be95fbbaf

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility