▲ 19 ▼ Arse and elbow (feddit.uk) submitted 8 months ago by dave@feddit.uk to c/software_gore@programming.dev 5 comments fedilink hide all child comments Who exactly is encouraging webp usage? Oh right... From the google OAuth configuration screen.
[–] qjkxbmwvz@startrek.website 3 points 8 months ago (4 children) Huh, it's not like there are any security issues with it... permalink fedilink source hideshow 4 child comments replies: [–] Kissaki@programming.dev 4 points 8 months ago (2 children) Links to two years ago. Surely jpg png or bmp parsers had security issues whatever years ago as well? permalink fedilink source parent hideshow 2 child comments replies: [–] qjkxbmwvz@startrek.website 1 point 8 months ago (1 child) I'm not sure they've had bugs as severe as CVE-2023-4863 though? permalink fedilink source parent hideshow 1 child comment replies: [–] BatmanAoD@programming.dev 2 points 8 months ago Not in 2023, but this one has the exact same score: https://nvd.nist.gov/vuln/detail/CVE-2020-17541 permalink fedilink source parent [–] MonkderVierte@lemmy.zip 2 points 8 months ago* including Electron-based applications such as 1Password and Signal. Electron is affected by almost every vulnerability. 🙄 permalink fedilink source parent
[–] Kissaki@programming.dev 4 points 8 months ago (2 children) Links to two years ago. Surely jpg png or bmp parsers had security issues whatever years ago as well? permalink fedilink source parent hideshow 2 child comments replies: [–] qjkxbmwvz@startrek.website 1 point 8 months ago (1 child) I'm not sure they've had bugs as severe as CVE-2023-4863 though? permalink fedilink source parent hideshow 1 child comment replies: [–] BatmanAoD@programming.dev 2 points 8 months ago Not in 2023, but this one has the exact same score: https://nvd.nist.gov/vuln/detail/CVE-2020-17541 permalink fedilink source parent
[–] qjkxbmwvz@startrek.website 1 point 8 months ago (1 child) I'm not sure they've had bugs as severe as CVE-2023-4863 though? permalink fedilink source parent hideshow 1 child comment replies: [–] BatmanAoD@programming.dev 2 points 8 months ago Not in 2023, but this one has the exact same score: https://nvd.nist.gov/vuln/detail/CVE-2020-17541 permalink fedilink source parent
[–] BatmanAoD@programming.dev 2 points 8 months ago Not in 2023, but this one has the exact same score: https://nvd.nist.gov/vuln/detail/CVE-2020-17541 permalink fedilink source parent
[–] MonkderVierte@lemmy.zip 2 points 8 months ago* including Electron-based applications such as 1Password and Signal. Electron is affected by almost every vulnerability. 🙄 permalink fedilink source parent
all 5 comments