Spyke

Syndicated from the fediverse. Read and engage on the original instance.

View original on lemmy.world

3 replies

reddthat.com

Fix is to address a critical CVE:

Specific handling of an attacker-controlled VP8 media stream could lead to a heap buffer overflow in the content process. We are aware of this issue being exploited in other products in the wild.

14
pivot_rootreply
lemmy.world

Any idea if it's the same root cause as CVE-2023-4863 (libwebp heap buffer overflow)? WEBP is a derivative of VP8, after all.

2

You reached the end

Firefox 118.1 released | Spyke