WPE WebKit Advisory URL : https://wpewebkit.org/security/WSA-2022-0007.html CVE identifiers : CVE-2022-32792, CVE-2022-32816, CVE-2022-2294. Several vulnerabilities were discovered in WebKitGTK and WPE WebKit. CVE-2022-32792 Versions affected: WebKitGTK and WPE WebKit before 2.36.5. Credit to Manfred Paul (@_manfp) working with Trend Micro Zero Day Initiative. Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Description: An out-of-bounds write issue was addressed with improved input validation.
RHEL 8 Errata: https://access.redhat.com/errata/RHSA-2022:7704 RHEL 9 Errata: https://access.redhat.com/errata/RHSA-2022:8054
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Extended Lifecycle Support Via RHSA-2025:10364 https://access.redhat.com/errata/RHSA-2025:10364