You are viewing a single thread.
View all comments View context
2 points

JPEG-XL is better

Citation needed

permalink
report
parent
reply
4 points

In September 2023, two critical vulnerabilities[108] relating to WebP images were discovered by Apple Security Engineering and Architecture (SEAR) and the Citizen Lab, potentially affecting Google Chrome, Chromium-based browsers and the Google’s libwebp project, among any application implementing libwebp. Among these vulnerabilities, CVE-2023-4863 was an actively exploited vulnerability with a high risk rating of CVSS 8.8. This could lead to an out of bounds/overflow condition in applications using the affected libwebp library, upon exploitation of a maliciously crafted .webp lossless file. This could result in a denial of service (DoS), or worse, enabling malicious remote code execution (RCE). The extensive use of libwebp packages across hundreds of applications, including all categories from web browsers to mobile apps, posed a major patching challenge to mitigate the vulnerability due to the demanding testing requirements before release, highlighting the implications of this vulnerability on a wide scale.

https://en.m.wikipedia.org/w/index.php?title=WebP

permalink
report
parent
reply
1 point

So what, we’re not supposed to use any library that’s ever had a vulnerability? You better go uninstall literally everything on your computer then

permalink
report
parent
reply
1 point

It is a modern successor to formats like WebP & JPEG. WebP was barely competitive with JPEG

permalink
report
parent
reply
1 point

WebP was barely competitive with JPEG

Citation needed

permalink
report
parent
reply

Memes

!memes@lemmy.ml

Create post

Rules:

  1. Be civil and nice.
  2. Try not to excessively repost, as a rule of thumb, wait at least 2 months to do it if you have to.

Community stats

  • 13K

    Monthly active users

  • 12K

    Posts

  • 259K

    Comments