CVE-2024-7532

high
EUVD alias: EUVD-2024-48439
Published 2026-09-30 · Modified 2026-09-30
CVSS v3
—
CVSS v4 NEW
—
not yet in upstream
VIR risk
8.0

Description

RHSA-2026:69098: webkit2gtk3 security update (Important)

Predictions

Exploit likelihood
20%
Patch ETA
—

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

Mitigation details

Source: Red Hat Errata — Red Hat Inc. · View original ↗ · Open-Errata-API

Description chromium-browser: angle: Out of bounds memory access in ANGLE CVSS v3: 9.6 (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H) Errata / fixed releases ProductPackageAdvisoryReleased Red Hat Enterprise Linux 8webkit2gtk3-0:2.54.0-1.el8_10RHSA-2026:740842026-09-30T00:00:00Z Red Hat Enterprise Linux 9webkit2gtk3-0:2.54.0-1.el9_8RHSA-2026:690982026-09-21T00:00:00Z Package state…

Description

chromium-browser: angle: Out of bounds memory access in ANGLE

CVSS v3: 9.6 (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H)

Errata / fixed releases

ProductPackageAdvisoryReleased
Red Hat Enterprise Linux 8webkit2gtk3-0:2.54.0-1.el8_10RHSA-2026:740842026-09-30T00:00:00Z
Red Hat Enterprise Linux 9webkit2gtk3-0:2.54.0-1.el9_8RHSA-2026:690982026-09-21T00:00:00Z

Package state

ProductPackageState
Red Hat Enterprise Linux 6webkitgtkOut of support scope
Red Hat Enterprise Linux 7webkitgtk3Not affected
Red Hat Enterprise Linux 7webkitgtk4Affected

Apply commands

bash fix
Apply RHSA-2026:74084 for Red Hat Enterprise Linux 8
yum update -y webkit2gtk3
# or:
dnf upgrade -y webkit2gtk3

Affected

VendorProductVersion
redhatRed Hat Enterprise Linux 7Not affected
redhatRed Hat Enterprise Linux 7Affected

OS impact

debian Debian Mixed 5 releases
VersionStatusFixed in
trixie Fixed 127.0.6533.99-1
sid Fixed 127.0.6533.99-1
forky Fixed 127.0.6533.99-1
bullseye Affected —
bookworm Fixed 127.0.6533.99-1~deb12u1
alpine Alpine Fixed 4 releases
VersionStatusFixed in
v3.24 Fixed 6.7.2-r2
v3.23 Fixed 6.7.2-r2
v3.22 Fixed 6.7.2-r2
v3.21 Fixed 6.7.2-r2
redhat Red Hat Fixed 2 releases
VersionStatusFixed in
9 Fixed —
8 Fixed —

References

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.