In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade SLES:15.3 webkit2gtk3-devel to version 2.32.3-9.1 or higher.
Note: Versions mentioned in the description apply only to the upstream webkit2gtk3-devel package and not the webkit2gtk3-devel package as distributed by SLES.
See How to fix? for SLES:15.3 relevant fixed versions and status.
A use-after-free vulnerability exists in the way certain events are processed for ImageLoader objects of Webkit WebKitGTK 2.30.4. A specially crafted web page can lead to a potential information leak and further memory corruption. In order to trigger the vulnerability, a victim must be tricked into visiting a malicious webpage.