Debian Package Tracker
Register | Log in
Subscribe

webkit2gtk

Choose email to subscribe with

general
  • source: webkit2gtk (main)
  • version: 2.50.0-2
  • maintainer: Debian WebKit Maintainers (archive) (DMD)
  • uploaders: Emilio Pozuelo Monfort [DMD] – Gustavo Noronha Silva [DMD] – Alberto Garcia [DMD]
  • arch: all
  • std-ver: 4.7.2
  • VCS: Git (Browse, QA)
versions [more versions can be listed by madison] [old versions available from snapshot.debian.org]
[pool directory]
  • o-o-stable: 2.44.2-1~deb11u1
  • o-o-sec: 2.48.5-1~deb11u1
  • oldstable: 2.48.1-2~deb12u1
  • old-sec: 2.48.5-1~deb12u1
  • old-bpo: 2.46.1-2~bpo12+1
  • stable: 2.48.3-1
  • stable-sec: 2.48.5-1~deb13u1
  • testing: 2.48.6-1
  • unstable: 2.50.0-2
versioned links
  • 2.42.2-1~deb11u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.42.2-1~deb12u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.44.2-1~deb11u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.46.1-2~bpo12+1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.48.1-2~deb12u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.48.3-1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.48.5-1~deb11u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.48.5-1~deb12u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.48.5-1~deb13u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.48.6-1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.50.0-2: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
binaries
  • gir1.2-javascriptcoregtk-4.1
  • gir1.2-javascriptcoregtk-6.0
  • gir1.2-webkit-6.0
  • gir1.2-webkit2-4.1
  • libjavascriptcoregtk-4.1-0
  • libjavascriptcoregtk-4.1-dev
  • libjavascriptcoregtk-6.0-1
  • libjavascriptcoregtk-6.0-dev
  • libjavascriptcoregtk-bin
  • libwebkit2gtk-4.1-0 (4 bugs: 0, 4, 0, 0)
  • libwebkit2gtk-4.1-dev
  • libwebkitgtk-6.0-4 (1 bugs: 0, 1, 0, 0)
  • libwebkitgtk-6.0-dev
  • libwebkitgtk-doc
  • webkitgtk-webdriver
action needed
4 security issues in trixie high

There are 4 open security issues in trixie.

4 important issues:
  • CVE-2025-43272: The issue was addressed with improved memory handling. This issue is fixed in Safari 26, visionOS 26, watchOS 26, macOS Tahoe 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to an unexpected Safari crash.
  • CVE-2025-43342: A correctness issue was addressed with improved checks. This issue is fixed in tvOS 26, Safari 26, iOS 18.7 and iPadOS 18.7, visionOS 26, watchOS 26, macOS Tahoe 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to an unexpected process crash.
  • CVE-2025-43356: The issue was addressed with improved handling of caches. This issue is fixed in tvOS 26, Safari 26, iOS 18.7 and iPadOS 18.7, visionOS 26, watchOS 26, macOS Tahoe 26, iOS 26 and iPadOS 26. A website may be able to access sensor information without user consent.
  • CVE-2025-43368: A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26, macOS Tahoe 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to an unexpected Safari crash.
Created: 2025-09-23 Last update: 2025-09-26 18:56
4 security issues in forky high

There are 4 open security issues in forky.

4 important issues:
  • CVE-2025-43272: The issue was addressed with improved memory handling. This issue is fixed in Safari 26, visionOS 26, watchOS 26, macOS Tahoe 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to an unexpected Safari crash.
  • CVE-2025-43342: A correctness issue was addressed with improved checks. This issue is fixed in tvOS 26, Safari 26, iOS 18.7 and iPadOS 18.7, visionOS 26, watchOS 26, macOS Tahoe 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to an unexpected process crash.
  • CVE-2025-43356: The issue was addressed with improved handling of caches. This issue is fixed in tvOS 26, Safari 26, iOS 18.7 and iPadOS 18.7, visionOS 26, watchOS 26, macOS Tahoe 26, iOS 26 and iPadOS 26. A website may be able to access sensor information without user consent.
  • CVE-2025-43368: A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26, macOS Tahoe 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to an unexpected Safari crash.
Created: 2025-09-23 Last update: 2025-09-26 18:56
4 security issues in bullseye high

There are 4 open security issues in bullseye.

4 important issues:
  • CVE-2025-43272: The issue was addressed with improved memory handling. This issue is fixed in Safari 26, visionOS 26, watchOS 26, macOS Tahoe 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to an unexpected Safari crash.
  • CVE-2025-43342: A correctness issue was addressed with improved checks. This issue is fixed in tvOS 26, Safari 26, iOS 18.7 and iPadOS 18.7, visionOS 26, watchOS 26, macOS Tahoe 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to an unexpected process crash.
  • CVE-2025-43356: The issue was addressed with improved handling of caches. This issue is fixed in tvOS 26, Safari 26, iOS 18.7 and iPadOS 18.7, visionOS 26, watchOS 26, macOS Tahoe 26, iOS 26 and iPadOS 26. A website may be able to access sensor information without user consent.
  • CVE-2025-43368: A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26, macOS Tahoe 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to an unexpected Safari crash.
Created: 2025-09-23 Last update: 2025-09-26 18:56
4 security issues in bookworm high

There are 4 open security issues in bookworm.

4 important issues:
  • CVE-2025-43272: The issue was addressed with improved memory handling. This issue is fixed in Safari 26, visionOS 26, watchOS 26, macOS Tahoe 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to an unexpected Safari crash.
  • CVE-2025-43342: A correctness issue was addressed with improved checks. This issue is fixed in tvOS 26, Safari 26, iOS 18.7 and iPadOS 18.7, visionOS 26, watchOS 26, macOS Tahoe 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to an unexpected process crash.
  • CVE-2025-43356: The issue was addressed with improved handling of caches. This issue is fixed in tvOS 26, Safari 26, iOS 18.7 and iPadOS 18.7, visionOS 26, watchOS 26, macOS Tahoe 26, iOS 26 and iPadOS 26. A website may be able to access sensor information without user consent.
  • CVE-2025-43368: A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26, macOS Tahoe 26, iOS 26 and iPadOS 26. Processing maliciously crafted web content may lead to an unexpected Safari crash.
Created: 2025-09-23 Last update: 2025-09-26 18:56
Fails to build during reproducibility testing normal
A package building reproducibly enables third parties to verify that the source matches the distributed binaries. It has been identified that this source package produced different results, failed to build or had other issues in a test environment. Please read about how to improve the situation!
Created: 2025-06-06 Last update: 2025-09-29 16:00
version in VCS is newer than in repository, is it time to upload? normal
vcswatch reports that this package seems to have a new changelog entry (version 2.50.0-3, distribution UNRELEASED) and new commits in its VCS. You should consider whether it's time to make an upload.

Here are the relevant commit messages:
commit e22d894089d8eeee9ef452244f5b1b2bb0b9bd32
Author: Alberto Garcia <berto@igalia.com>
Date:   Sun Sep 28 18:52:56 2025 +0200

    Enable Skia in loong64

commit 6f98fa8c58dd63f396b5aaf8a7afdc636b87ee51
Author: Alberto Garcia <berto@igalia.com>
Date:   Sun Sep 28 18:52:49 2025 +0200

    Enable the bubblewrap sandbox in loong64
Created: 2025-09-28 Last update: 2025-09-28 18:00
lintian reports 5 warnings normal
Lintian reports 5 warnings about this package. You should make the package lintian clean getting rid of them.
Created: 2025-09-26 Last update: 2025-09-27 03:02
1 open merge request in Salsa normal
There is 1 open merge request for this package on Salsa. You should consider reviewing and/or merging these merge requests.
Created: 2025-08-19 Last update: 2025-09-03 16:35
debian/patches: 3 patches to forward upstream low

Among the 6 debian patches available in version 2.50.0-2 of the package, we noticed the following issues:

  • 3 patches where the metadata indicates that the patch has not yet been forwarded upstream. You should either forward the patch upstream or update the metadata to document its real status.
Created: 2023-02-26 Last update: 2025-09-26 19:31
testing migrations
  • This package will soon be part of the auto-icu transition. You might want to ensure that your package is ready for it. You can probably find supplementary information in the debian-release archives or in the corresponding release.debian.org bug.
  • excuses:
    • Migration status for webkit2gtk (2.48.6-1 to 2.50.0-2): Waiting for test results or another package, or too young (no action required now - check later)
    • Issues preventing migration:
    • ∙ ∙ Too young, only 3 of 5 days old
    • Additional info:
    • ∙ ∙ Piuparts tested OK - https://piuparts.debian.org/sid/source/w/webkit2gtk.html
    • ∙ ∙ Ignoring non-reproducibility on amd64 (not a regression) - info ♻
    • Not considered
news
[rss feed]
  • [2025-09-26] Accepted webkit2gtk 2.50.0-2 (source) into unstable (Alberto Garcia)
  • [2025-09-19] Accepted webkit2gtk 2.50.0-1 (source) into unstable (Alberto Garcia)
  • [2025-09-10] webkit2gtk 2.48.6-1 MIGRATED to testing (Debian testing watch)
  • [2025-09-04] Accepted webkit2gtk 2.48.6-1 (source) into unstable (Alberto Garcia)
  • [2025-09-02] Accepted webkit2gtk 2.49.90-1 (source) into experimental (Alberto Garcia)
  • [2025-08-21] Accepted webkit2gtk 2.48.5-1~deb12u1 (source) into oldstable-proposed-updates (Debian FTP Masters) (signed by: Alberto Garcia)
  • [2025-08-21] Accepted webkit2gtk 2.48.5-1~deb13u1 (source) into proposed-updates (Debian FTP Masters) (signed by: Alberto Garcia)
  • [2025-08-19] Accepted webkit2gtk 2.48.5-1~deb11u1 (source) into oldoldstable-security (Emilio Pozuelo Monfort)
  • [2025-08-18] Accepted webkit2gtk 2.48.5-1~deb13u1 (source) into stable-security (Debian FTP Masters) (signed by: Alberto Garcia)
  • [2025-08-18] Accepted webkit2gtk 2.48.5-1~deb12u1 (source) into oldstable-security (Debian FTP Masters) (signed by: Alberto Garcia)
  • [2025-08-17] webkit2gtk 2.48.5-1 MIGRATED to testing (Debian testing watch)
  • [2025-08-10] Accepted webkit2gtk 2.48.5-1 (source) into unstable (Alberto Garcia)
  • [2025-06-16] Accepted webkit2gtk 2.48.3-1~deb11u1 (source) into oldstable-security (Emilio Pozuelo Monfort)
  • [2025-06-06] Accepted webkit2gtk 2.48.3-1~deb12u1 (source) into proposed-updates (Debian FTP Masters) (signed by: Alberto Garcia)
  • [2025-06-06] Accepted webkit2gtk 2.48.3-1~deb12u1 (source) into stable-security (Debian FTP Masters) (signed by: Alberto Garcia)
  • [2025-06-05] webkit2gtk 2.48.3-1 MIGRATED to testing (Debian testing watch)
  • [2025-05-29] Accepted webkit2gtk 2.48.3-1 (source) into unstable (Alberto Garcia)
  • [2025-05-16] Accepted webkit2gtk 2.48.2-1 (source) into unstable (Alberto Garcia)
  • [2025-05-16] webkit2gtk 2.48.1-3 MIGRATED to testing (Debian testing watch)
  • [2025-05-05] Accepted webkit2gtk 2.48.1-3 (source) into unstable (Alberto Garcia)
  • [2025-04-13] Accepted webkit2gtk 2.48.1-2~deb12u1 (source) into proposed-updates (Debian FTP Masters) (signed by: Alberto Garcia)
  • [2025-04-10] Accepted webkit2gtk 2.48.1-2~deb12u1 (source) into stable-security (Debian FTP Masters) (signed by: Alberto Garcia)
  • [2025-04-09] webkit2gtk 2.48.1-2 MIGRATED to testing (Debian testing watch)
  • [2025-04-05] Accepted webkit2gtk 2.48.1-2 (source) into unstable (Alberto Garcia)
  • [2025-04-02] Accepted webkit2gtk 2.48.1-1 (source) into unstable (Alberto Garcia)
  • [2025-03-27] Accepted webkit2gtk 2.48.0-1~deb12u1 (source) into proposed-updates (Debian FTP Masters) (signed by: Alberto Garcia)
  • [2025-03-23] Accepted webkit2gtk 2.48.0-1~deb12u1 (source) into stable-security (Debian FTP Masters) (signed by: Alberto Garcia)
  • [2025-03-21] webkit2gtk 2.48.0-1 MIGRATED to testing (Debian testing watch)
  • [2025-03-15] Accepted webkit2gtk 2.48.0-1 (source) into unstable (Alberto Garcia)
  • [2025-02-25] Accepted webkit2gtk 2.47.90-1 (source) into experimental (Alberto Garcia)
  • 1
  • 2
bugs [bug history graph]
  • all: 14
  • RC: 0
  • I&N: 12
  • M&W: 2
  • F&P: 0
  • patch: 0
links
  • homepage
  • lintian (0, 5)
  • buildd: logs, reproducibility
  • popcon
  • browse source code
  • edit tags
  • other distros
  • security tracker
  • l10n (-, 75)
  • debian patches
ubuntu Ubuntu logo [Information about Ubuntu for Debian Developers]
  • version: 2.48.6-1ubuntu2
  • 77 bugs (1 patch)
  • patches for 2.48.6-1ubuntu2

Debian Package Tracker — Copyright 2013-2025 The Distro Tracker Developers
Report problems to the tracker.debian.org pseudo-package in the Debian BTS.
Documentation — Bugs — Git Repository — Contributing