this post was submitted on 26 Sep 2023
20 points (91.7% liked)

Liftoff!

4351 readers
1 users here now

A mobile client for Lemmy running on iOS and Android

founded 1 year ago
MODERATORS
 

I recently saw an article (https://stackdiary.com/heap-buffer-overflow-in-libwebp-cve-2023-5129/) that said WEBP images could be a huge security hole right now and I know Lemmy uses a lot of WEBP images.

I'm not sure how long this has been known, so maybe the Liftoff devs already took care of it. Does anyone know if Liftoff has already made the necessary patches?

you are viewing a single comment's thread
view the rest of the comments
[–] MeatAndSarcasmGuy 6 points 1 year ago

Oh that's interesting. I thought it would be through the app, since the article mentioned being patched in browsers; so that's definitely good to know.