Versions affected: WebKitGTK and WPE WebKit before 2.40.1. Credit to Gertjan Franken of imec-DistriNet, KU Leuven. Impact: Content Security Policy to block domains with wildcards may fail. Description: A logic issue was addressed with improved validation.
Created webkitgtk tracking bugs for this issue: Affects: fedora-37 [bug 2239382] Affects: fedora-38 [bug 2239383]
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2023:6535 https://access.redhat.com/errata/RHSA-2023:6535
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2023:7055 https://access.redhat.com/errata/RHSA-2023:7055