Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update libwebp CVE-2023-1999 #36

Open
fdaugan opened this issue Sep 15, 2023 · 2 comments
Open

Update libwebp CVE-2023-1999 #36

fdaugan opened this issue Sep 15, 2023 · 2 comments

Comments

@fdaugan
Copy link

fdaugan commented Sep 15, 2023

Your package points to an old ref of libwebp related to CVE-2023-1999
Could you update it?

@mateuszkwiecinski
Copy link

Seeing this library (and none of its forks) are not maintained anymore, I started some time ago maintaining a fork of it. The most recent release v0.5.0 ships with binaries built from v1.3.2 of libwebp (which shouldn't be affected neither by CVE-2023-1999 nor a more recent one CVE-2023-4863)

In case someone wants to try it out, the binaries are available on maven central, sources can be found on Github: https://github.com/usefulness/webp-imageio

@rohanmaheshh
Copy link

I'm looking to generate dynamic libraries (mac and linux) for libwebp to use as shared libraries in my project. Could someone please provide a concise step-by-step guide or tips on achieving this?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants