openSUSE Security Update: Security update for webkitgtk ______________________________________________________________________________ Announcement ID: openSUSE-SU-2016:0915-1 Rating: moderate References: #971460 Cross-References: CVE-2014-1748 CVE-2015-1071 CVE-2015-1076 CVE-2015-1081 CVE-2015-1083 CVE-2015-1120 CVE-2015-1122 CVE-2015-1127 CVE-2015-1153 CVE-2015-1155 CVE-2015-3658 CVE-2015-3659 CVE-2015-3727 CVE-2015-3731 CVE-2015-3741 CVE-2015-3743 CVE-2015-3745 CVE-2015-3747 CVE-2015-3748 CVE-2015-3749 CVE-2015-3752 CVE-2015-5788 CVE-2015-5794 CVE-2015-5801 CVE-2015-5809 CVE-2015-5822 CVE-2015-5928 Affected Products: openSUSE Leap 42.1 openSUSE 13.2 ______________________________________________________________________________ An update that fixes 27 vulnerabilities is now available. Description: This update for webkitgtk fixes the following issues: - webkitgtk was updated to version 2.4.10 (boo#971460): + Fix rendering of form controls and scrollbars with GTK+ >= 3.19. + Fix crashes on PPC64. + Fix the build on powerpc 32 bits. + Add ARM64 build support. + Security fixes: CVE-2015-1120, CVE-2015-1076, CVE-2015-1071, CVE-2015-1081, CVE-2015-1122, CVE-2015-1155, CVE-2014-1748, CVE-2015-3752, CVE-2015-5809, CVE-2015-5928, CVE-2015-3749, CVE-2015-3659, CVE-2015-3748, CVE-2015-3743, CVE-2015-3731, CVE-2015-3745, CVE-2015-5822, CVE-2015-3658, CVE-2015-3741, CVE-2015-3727, CVE-2015-5801, CVE-2015-5788, CVE-2015-3747, CVE-2015-5794, CVE-2015-1127, CVE-2015-1153, CVE-2015-1083. + Updated translations. Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE Leap 42.1: zypper in -t patch openSUSE-2016-412=1 - openSUSE 13.2: zypper in -t patch openSUSE-2016-412=1 To bring your system up-to-date, use "zypper patch". Package List: - openSUSE Leap 42.1 (i586 x86_64): libjavascriptcoregtk-1_0-0-2.4.10-7.2 libjavascriptcoregtk-1_0-0-debuginfo-2.4.10-7.2 libjavascriptcoregtk-3_0-0-2.4.10-7.2 libjavascriptcoregtk-3_0-0-debuginfo-2.4.10-7.2 libwebkitgtk-1_0-0-2.4.10-7.2 libwebkitgtk-1_0-0-debuginfo-2.4.10-7.2 libwebkitgtk-3_0-0-2.4.10-7.2 libwebkitgtk-3_0-0-debuginfo-2.4.10-7.2 libwebkitgtk-devel-2.4.10-7.2 libwebkitgtk3-devel-2.4.10-7.2 typelib-1_0-JavaScriptCore-1_0-2.4.10-7.2 typelib-1_0-JavaScriptCore-3_0-2.4.10-7.2 typelib-1_0-WebKit-1_0-2.4.10-7.2 typelib-1_0-WebKit-3_0-2.4.10-7.2 webkit-jsc-1-2.4.10-7.2 webkit-jsc-1-debuginfo-2.4.10-7.2 webkit-jsc-3-2.4.10-7.2 webkit-jsc-3-debuginfo-2.4.10-7.2 - openSUSE Leap 42.1 (noarch): libwebkitgtk2-lang-2.4.10-7.2 libwebkitgtk3-lang-2.4.10-7.2 - openSUSE Leap 42.1 (x86_64): libjavascriptcoregtk-1_0-0-32bit-2.4.10-7.2 libjavascriptcoregtk-1_0-0-debuginfo-32bit-2.4.10-7.2 libjavascriptcoregtk-3_0-0-32bit-2.4.10-7.2 libjavascriptcoregtk-3_0-0-debuginfo-32bit-2.4.10-7.2 libwebkitgtk-1_0-0-32bit-2.4.10-7.2 libwebkitgtk-1_0-0-debuginfo-32bit-2.4.10-7.2 libwebkitgtk-3_0-0-32bit-2.4.10-7.2 libwebkitgtk-3_0-0-debuginfo-32bit-2.4.10-7.2 - openSUSE 13.2 (i586 x86_64): libjavascriptcoregtk-1_0-0-2.4.10-13.2 libjavascriptcoregtk-1_0-0-debuginfo-2.4.10-13.2 libjavascriptcoregtk-3_0-0-2.4.10-13.2 libjavascriptcoregtk-3_0-0-debuginfo-2.4.10-13.2 libwebkitgtk-1_0-0-2.4.10-13.2 libwebkitgtk-1_0-0-debuginfo-2.4.10-13.2 libwebkitgtk-3_0-0-2.4.10-13.2 libwebkitgtk-3_0-0-debuginfo-2.4.10-13.2 libwebkitgtk-devel-2.4.10-13.2 libwebkitgtk3-devel-2.4.10-13.2 typelib-1_0-JavaScriptCore-1_0-2.4.10-13.2 typelib-1_0-JavaScriptCore-3_0-2.4.10-13.2 typelib-1_0-WebKit-1_0-2.4.10-13.2 typelib-1_0-WebKit-3_0-2.4.10-13.2 webkit-jsc-1-2.4.10-13.2 webkit-jsc-1-debuginfo-2.4.10-13.2 webkit-jsc-3-2.4.10-13.2 webkit-jsc-3-debuginfo-2.4.10-13.2 - openSUSE 13.2 (x86_64): libjavascriptcoregtk-1_0-0-32bit-2.4.10-13.2 libjavascriptcoregtk-1_0-0-debuginfo-32bit-2.4.10-13.2 libjavascriptcoregtk-3_0-0-32bit-2.4.10-13.2 libjavascriptcoregtk-3_0-0-debuginfo-32bit-2.4.10-13.2 libwebkitgtk-1_0-0-32bit-2.4.10-13.2 libwebkitgtk-1_0-0-debuginfo-32bit-2.4.10-13.2 libwebkitgtk-3_0-0-32bit-2.4.10-13.2 libwebkitgtk-3_0-0-debuginfo-32bit-2.4.10-13.2 - openSUSE 13.2 (noarch): libwebkitgtk2-lang-2.4.10-13.2 libwebkitgtk3-lang-2.4.10-13.2 References: https://www.suse.com/security/cve/CVE-2014-1748.html https://www.suse.com/security/cve/CVE-2015-1071.html https://www.suse.com/security/cve/CVE-2015-1076.html https://www.suse.com/security/cve/CVE-2015-1081.html https://www.suse.com/security/cve/CVE-2015-1083.html https://www.suse.com/security/cve/CVE-2015-1120.html https://www.suse.com/security/cve/CVE-2015-1122.html https://www.suse.com/security/cve/CVE-2015-1127.html https://www.suse.com/security/cve/CVE-2015-1153.html https://www.suse.com/security/cve/CVE-2015-1155.html https://www.suse.com/security/cve/CVE-2015-3658.html https://www.suse.com/security/cve/CVE-2015-3659.html https://www.suse.com/security/cve/CVE-2015-3727.html https://www.suse.com/security/cve/CVE-2015-3731.html https://www.suse.com/security/cve/CVE-2015-3741.html https://www.suse.com/security/cve/CVE-2015-3743.html https://www.suse.com/security/cve/CVE-2015-3745.html https://www.suse.com/security/cve/CVE-2015-3747.html https://www.suse.com/security/cve/CVE-2015-3748.html https://www.suse.com/security/cve/CVE-2015-3749.html https://www.suse.com/security/cve/CVE-2015-3752.html https://www.suse.com/security/cve/CVE-2015-5788.html https://www.suse.com/security/cve/CVE-2015-5794.html https://www.suse.com/security/cve/CVE-2015-5801.html https://www.suse.com/security/cve/CVE-2015-5809.html https://www.suse.com/security/cve/CVE-2015-5822.html https://www.suse.com/security/cve/CVE-2015-5928.html https://bugzilla.suse.com/971460