SUSE-SU-2020:1109-1 -- SLES webkit2gtk3ID: oval:org.secpod.oval:def:89000694 | Date: (C)2021-02-19 (M)2024-05-22 |
Class: PATCH | Family: unix |
This update for webkit2gtk3 to version 2.28.1 fixes the following issues: Security issues fixed: - CVE-2020-10018: Fixed a denial of service because the m_deferredFocusedNodeChange data structure was mishandled . - CVE-2020-11793: Fixed a potential arbitrary code execution caused by a use-after-free vulnerability . Non-security issues fixed: - Add API to enable Process Swap on Navigation. - Add user messages API for the communication with the web extension. - Add support for same-site cookies. - Service workers are enabled by default. - Add support for Pointer Lock API. - Add flatpak sandbox support. - Make ondemand hardware acceleration policy never leave accelerated compositing mode. - Always use a light theme for rendering form controls. - Add about:gpu to show information about the graphics stack.
Platform: |
SUSE Linux Enterprise Server 15 |