Alpine: multiple qt6-qtwebengine packages: security update to 6.11.1-r2

high Tenable Cloud Security Plugin ID 443103

Description

There are packages installed that are affected by multiple vulnerabilities referenced in the following CVEs:

- Use after free in Proxy in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute
arbitrary code via a crafted PAC script. (Chromium security severity: Critical) (CVE-2026-9887)

- Side-channel information leakage in Media in Google Chrome prior to 148.0.7778.96 allowed a remote
attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low)
(CVE-2026-8017)

- Integer overflow in XML in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute
arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
(CVE-2026-8532)

- Integer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to
perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Medium)
(CVE-2026-8567)

- Use after free in GPU in Google Chrome on Windows prior to 148.0.7778.179 allowed a remote attacker to
execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
(CVE-2026-9112)

Solution

Update the qt6-qtwebengine library and its related packages to version 6.11.1-r2 or later.

See Also

https://security.alpinelinux.org/vuln/CVE-2026-10002

https://security.alpinelinux.org/vuln/CVE-2026-10003

https://security.alpinelinux.org/vuln/CVE-2026-10004

https://security.alpinelinux.org/vuln/CVE-2026-10006

https://security.alpinelinux.org/vuln/CVE-2026-10007

https://security.alpinelinux.org/vuln/CVE-2026-10008

https://security.alpinelinux.org/vuln/CVE-2026-10009

https://security.alpinelinux.org/vuln/CVE-2026-10011

https://security.alpinelinux.org/vuln/CVE-2026-10013

https://security.alpinelinux.org/vuln/CVE-2026-10016

https://security.alpinelinux.org/vuln/CVE-2026-25210

https://security.alpinelinux.org/vuln/CVE-2026-8017

https://security.alpinelinux.org/vuln/CVE-2026-8532

https://security.alpinelinux.org/vuln/CVE-2026-8567

https://security.alpinelinux.org/vuln/CVE-2026-9112

https://security.alpinelinux.org/vuln/CVE-2026-9115

https://security.alpinelinux.org/vuln/CVE-2026-9118

https://security.alpinelinux.org/vuln/CVE-2026-9119

https://security.alpinelinux.org/vuln/CVE-2026-9121

https://security.alpinelinux.org/vuln/CVE-2026-9122

https://security.alpinelinux.org/vuln/CVE-2026-9124

https://security.alpinelinux.org/vuln/CVE-2026-9126

https://security.alpinelinux.org/vuln/CVE-2026-9872

https://security.alpinelinux.org/vuln/CVE-2026-9873

https://security.alpinelinux.org/vuln/CVE-2026-9875

https://security.alpinelinux.org/vuln/CVE-2026-9876

https://security.alpinelinux.org/vuln/CVE-2026-9877

https://security.alpinelinux.org/vuln/CVE-2026-9878

https://security.alpinelinux.org/vuln/CVE-2026-9879

https://security.alpinelinux.org/vuln/CVE-2026-9880

https://security.alpinelinux.org/vuln/CVE-2026-9881

https://security.alpinelinux.org/vuln/CVE-2026-9882

https://security.alpinelinux.org/vuln/CVE-2026-9883

https://security.alpinelinux.org/vuln/CVE-2026-9885

https://security.alpinelinux.org/vuln/CVE-2026-9887

https://security.alpinelinux.org/vuln/CVE-2026-9889

https://security.alpinelinux.org/vuln/CVE-2026-9890

https://security.alpinelinux.org/vuln/CVE-2026-9891

https://security.alpinelinux.org/vuln/CVE-2026-9892

https://security.alpinelinux.org/vuln/CVE-2026-9893

https://security.alpinelinux.org/vuln/CVE-2026-9894

https://security.alpinelinux.org/vuln/CVE-2026-9895

https://security.alpinelinux.org/vuln/CVE-2026-9896

https://security.alpinelinux.org/vuln/CVE-2026-9897

https://security.alpinelinux.org/vuln/CVE-2026-9899

https://security.alpinelinux.org/vuln/CVE-2026-9900

https://security.alpinelinux.org/vuln/CVE-2026-9901

https://security.alpinelinux.org/vuln/CVE-2026-9902

https://security.alpinelinux.org/vuln/CVE-2026-9903

https://security.alpinelinux.org/vuln/CVE-2026-9904

https://security.alpinelinux.org/vuln/CVE-2026-9906

https://security.alpinelinux.org/vuln/CVE-2026-9908

https://security.alpinelinux.org/vuln/CVE-2026-9910

https://security.alpinelinux.org/vuln/CVE-2026-9911

https://security.alpinelinux.org/vuln/CVE-2026-9914

https://security.alpinelinux.org/vuln/CVE-2026-9915

https://security.alpinelinux.org/vuln/CVE-2026-9919

https://security.alpinelinux.org/vuln/CVE-2026-9920

https://security.alpinelinux.org/vuln/CVE-2026-9921

https://security.alpinelinux.org/vuln/CVE-2026-9922

https://security.alpinelinux.org/vuln/CVE-2026-9972

https://security.alpinelinux.org/vuln/CVE-2026-9974

https://security.alpinelinux.org/vuln/CVE-2026-9975

https://security.alpinelinux.org/vuln/CVE-2026-9976

https://security.alpinelinux.org/vuln/CVE-2026-9979

https://security.alpinelinux.org/vuln/CVE-2026-9981

https://security.alpinelinux.org/vuln/CVE-2026-9982

https://security.alpinelinux.org/vuln/CVE-2026-9983

https://security.alpinelinux.org/vuln/CVE-2026-9988

https://security.alpinelinux.org/vuln/CVE-2026-9992

https://security.alpinelinux.org/vuln/CVE-2026-9993

https://security.alpinelinux.org/vuln/CVE-2026-9994

https://security.alpinelinux.org/vuln/CVE-2026-9995

https://security.alpinelinux.org/vuln/CVE-2026-9996

https://security.alpinelinux.org/vuln/CVE-2026-9997

https://security.alpinelinux.org/vuln/CVE-2026-9998

https://security.alpinelinux.org/vuln/CVE-2026-9999

Plugin Details

Severity: High

ID: 443103

Version: Revision 1.2

Type: Local

Published: 6/12/2026

Updated: 6/19/2026

Supported Sensors: Agentless Assessment

Risk Information

VPR

Risk Factor: High

Score: 8.1

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS Score Source: CVE-2026-9887

CVSS v3

Risk Factor: High

Base Score: 8.8

Temporal Score: 7.7

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Vulnerability Publication Date: 1/30/2026

Reference Information

CVE: CVE-2026-10002, CVE-2026-10003, CVE-2026-10004, CVE-2026-10006, CVE-2026-10007, CVE-2026-10008, CVE-2026-10009, CVE-2026-10011, CVE-2026-10013, CVE-2026-10016, CVE-2026-25210, CVE-2026-8017, CVE-2026-8532, CVE-2026-8567, CVE-2026-9112, CVE-2026-9115, CVE-2026-9118, CVE-2026-9119, CVE-2026-9121, CVE-2026-9122, CVE-2026-9124, CVE-2026-9126, CVE-2026-9872, CVE-2026-9873, CVE-2026-9875, CVE-2026-9876, CVE-2026-9877, CVE-2026-9878, CVE-2026-9879, CVE-2026-9880, CVE-2026-9881, CVE-2026-9882, CVE-2026-9883, CVE-2026-9885, CVE-2026-9887, CVE-2026-9889, CVE-2026-9890, CVE-2026-9891, CVE-2026-9892, CVE-2026-9893, CVE-2026-9894, CVE-2026-9895, CVE-2026-9896, CVE-2026-9897, CVE-2026-9899, CVE-2026-9900, CVE-2026-9901, CVE-2026-9902, CVE-2026-9903, CVE-2026-9904, CVE-2026-9906, CVE-2026-9908, CVE-2026-9910, CVE-2026-9911, CVE-2026-9914, CVE-2026-9915, CVE-2026-9919, CVE-2026-9920, CVE-2026-9921, CVE-2026-9922, CVE-2026-9972, CVE-2026-9974, CVE-2026-9975, CVE-2026-9976, CVE-2026-9979, CVE-2026-9981, CVE-2026-9982, CVE-2026-9983, CVE-2026-9988, CVE-2026-9992, CVE-2026-9993, CVE-2026-9994, CVE-2026-9995, CVE-2026-9996, CVE-2026-9997, CVE-2026-9998, CVE-2026-9999