PT-2016-7951 · Gnome+1 · Shotwell+1

Published

2016-03-16

·

Updated

2016-03-16

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Shotwell (affected versions not specified)
Description The issue arises from Shotwell's use of outdated Webkit library APIs, which are no longer maintained. This has been resolved by updating the shotwell package to utilize the current Webkit API, allowing it to benefit from security fixes in the newer Webkit branch. An additional benefit of this update is the ability for shotwell to validate TLS certificates when connecting to websites.
Recommendations Update the shotwell package to use the current Webkit API, which allows it to benefit from security fixes in the newer Webkit branch.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

MGASA-2016-0111

Affected Products

Shotwell
Webkit