Processing maliciously crafted web content in WebKitGTK+ before version 2.18.4 may lead to arbitrary code execution. Technical details are currently unknown. References: https://webkitgtk.org/security/WSA-2017-0010.html https://vuldb.com/?id.110750
Created mingw-webkitgtk tracking bugs for this issue: Affects: fedora-all [bug 1527750] Created mingw-webkitgtk3 tracking bugs for this issue: Affects: fedora-all [bug 1527752] Created webkitgtk tracking bugs for this issue: Affects: epel-all [bug 1527748] Affects: fedora-all [bug 1527751] Created webkitgtk4 tracking bugs for this issue: Affects: fedora-all [bug 1527749]
(In reply to Sam Fowler from comment #1) > Created mingw-webkitgtk tracking bugs for this issue: > > Affects: fedora-all [bug 1527750] > > > Created mingw-webkitgtk3 tracking bugs for this issue: > > Affects: fedora-all [bug 1527752] > > > Created webkitgtk tracking bugs for this issue: > > Affects: epel-all [bug 1527748] > Affects: fedora-all [bug 1527751] The above packages will not be fixed. The mingw- packages really ought to be retired... I did not know about them.