Bug 2450634

Summary: webkitgtk-2.50.5: WebKitWebProcess repeated SIGABRT crashes (heap corruption), upstream fixed in 2.50.6+
Product: [Fedora] Fedora Reporter: Sbenazar <voroninan95ton>
Component: webkitgtkAssignee: Michael Catanzaro <mcatanza>
Status: CLOSED ERRATA QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: medium Docs Contact:
Priority: unspecified    
Version: 43CC: daniel, gnome-sig, mcatanza, suraj.ghimire7, tpopela
Target Milestone: ---   
Target Release: ---   
Hardware: x86_64   
OS: Linux   
Whiteboard:
Fixed In Version: webkitgtk-2.52.1-1.fc44 webkitgtk-2.52.1-1.fc43 webkitgtk-2.52.1-1.fc42 Doc Type: ---
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2026-03-31 00:19:17 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Sbenazar 2026-03-24 07:38:51 UTC
WebKitWebProcess crashes repeatedly with SIGABRT due to heap corruption detected by glibc malloc.

9 crashes over 10 days (4 in current boot alone), all with the same pattern:
  abort → __libc_message_impl.cold → malloc_printerr

Environment:
- Fedora 43 Workstation, GNOME 49, Wayland
- webkit2gtk4.1-2.50.5-1.fc43.x86_64
- glib2-2.86.4-2.fc43.x86_64
- mesa-25.3.6-2.fc43 (AMD Radeon 780M, Vulkan)
- kernel-6.19.8-200.fc43.x86_64
- Hardware: HONOR FMI-XX, AMD Ryzen 7 8845HS

Crash stack (main thread):
  #0 __pthread_kill_implementation (libc.so.6)
  #1 raise (libc.so.6)
  #2 abort (libc.so.6)
  #3 __libc_message_impl.cold (libc.so.6)
  #4 malloc_printerr (libc.so.6)

Upstream has released:
- WebKitGTK 2.50.6 (2026-03-12): "Fix several crashes and rendering issues"
- WebKitGTK 2.52.0 (2026-03-18): Fixes 17 CVEs including use-after-free (CVE-2025-43438, CVE-2025-43457, CVE-2025-43511) and memory corruption (CVE-2025-31223, CVE-2025-31277, CVE-2025-43433)

Please update webkitgtk to at least 2.50.6 for Fedora 43.

coredumpctl list output:
Mon 2026-03-23 13:01:31 EET - /usr/libexec/webkit2gtk-4.1/WebKitWebProcess SIGABRT 22.7M
Mon 2026-03-23 17:06:52 EET - /usr/libexec/webkit2gtk-4.1/WebKitWebProcess SIGABRT 22.6M
Mon 2026-03-23 20:24:56 EET - /usr/libexec/webkit2gtk-4.1/WebKitWebProcess SIGABRT  9.5M

Comment 1 Michael Catanzaro 2026-03-24 13:57:25 UTC
I wouldn't be so confident that it's fixed unless you've tested the new version or collected a stack trace, but it's time to update indeed.

Comment 2 Fedora Update System 2026-03-24 13:58:37 UTC
FEDORA-2026-431948187d (webkitgtk-2.52.0-1.fc43) has been submitted as an update to Fedora 43.
https://bodhi.fedoraproject.org/updates/FEDORA-2026-431948187d

Comment 3 Fedora Update System 2026-03-24 13:58:39 UTC
FEDORA-2026-6502cee6c2 (webkitgtk-2.52.0-1.fc44) has been submitted as an update to Fedora 44.
https://bodhi.fedoraproject.org/updates/FEDORA-2026-6502cee6c2

Comment 4 Fedora Update System 2026-03-24 19:27:13 UTC
FEDORA-2026-36594550b0 (webkitgtk-2.52.0-1.fc42) has been submitted as an update to Fedora 42.
https://bodhi.fedoraproject.org/updates/FEDORA-2026-36594550b0

Comment 5 Fedora Update System 2026-03-25 02:00:12 UTC
FEDORA-2026-36594550b0 has been pushed to the Fedora 42 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2026-36594550b0`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2026-36594550b0

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 6 Fedora Update System 2026-03-25 02:29:08 UTC
FEDORA-2026-431948187d has been pushed to the Fedora 43 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2026-431948187d`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2026-431948187d

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 7 Fedora Update System 2026-03-25 03:08:40 UTC
FEDORA-2026-6502cee6c2 has been pushed to the Fedora 44 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2026-6502cee6c2`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2026-6502cee6c2

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 8 Fedora Update System 2026-03-29 01:48:11 UTC
FEDORA-2026-f00460a7d9 has been pushed to the Fedora 44 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2026-f00460a7d9`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2026-f00460a7d9

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 9 Fedora Update System 2026-03-30 18:03:16 UTC
FEDORA-2026-431948187d has been pushed to the Fedora 43 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2026-431948187d`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2026-431948187d

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 10 Fedora Update System 2026-03-30 18:24:39 UTC
FEDORA-2026-36594550b0 has been pushed to the Fedora 42 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2026-36594550b0`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2026-36594550b0

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 11 Fedora Update System 2026-03-31 00:19:17 UTC
FEDORA-2026-f00460a7d9 (webkitgtk-2.52.1-1.fc44) has been pushed to the Fedora 44 stable repository.
If problem still persists, please make note of it in this bug report.

Comment 12 Fedora Update System 2026-04-14 00:59:22 UTC
FEDORA-2026-431948187d (webkitgtk-2.52.1-1.fc43) has been pushed to the Fedora 43 stable repository.
If problem still persists, please make note of it in this bug report.

Comment 13 Fedora Update System 2026-04-14 01:08:13 UTC
FEDORA-2026-36594550b0 (webkitgtk-2.52.1-1.fc42) has been pushed to the Fedora 42 stable repository.
If problem still persists, please make note of it in this bug report.