PT-2016-7951 · Gnome+1 · Shotwell+1
Published
2016-03-16
·
Updated
2016-03-16
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions
Shotwell (affected versions not specified)
Description
The issue arises from Shotwell's use of outdated Webkit library APIs, which are no longer maintained. This has been resolved by updating the shotwell package to utilize the current Webkit API, allowing it to benefit from security fixes in the newer Webkit branch. An additional benefit of this update is the ability for shotwell to validate TLS certificates when connecting to websites.
Recommendations
Update the shotwell package to use the current Webkit API, which allows it to benefit from security fixes in the newer Webkit branch.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Shotwell
Webkit