Unable to load image

Everyone on rdrama is now running a compromised device: vulnerability in webp discovered

https://stackdiary.com/critical-vulnerability-in-webp-codec-cve-2023-4863

https://www.mozilla.org/en-US/security/advisories/mfsa2023-40

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-4863

https://chromereleases.googleblog.com/2023/09/stable-channel-update-for-desktop_11.html

A significant vulnerability in the WebP Codec has been unearthed, prompting major browser vendors, including Google and Mozilla, to expedite the release of updates to address the issue.

⚠️ Important: Let me make it perfectly clear that this vulnerability doesn't just affect web browsers, it affects any software that uses the libwebp library. This includes Electron-based applications, for example - Signal. Electron patched the vulnerability yesterday. Also, software like Honeyview (from Bandisoft) released an update to fix the issue. CVE-2023-4863 was falsely marked as Chrome-only by Mitre and other organizations that track CVE's and 100% of media reported this issue as "Chrome only", when it's not.

The root of the issue lies within the "BuildHuffmanTable" function which was first introduced in 2014, the function is used to verify if the data is accurate. The vulnerability can occur when more memory is allocated if the table isn't sufficiently large for valid data.

Hope you updated your browser before loading rdrama today, bros.

49
Jump in the discussion.

No email address required.

Neat but nobody will beat my love for Adobe's frickup when just browsing a Flash page in a browser let someone take over the machine. It will always have a special place in my heart, and that's when browsers just said "aw heck nawww" and stopped support for it.


Krayon sexually assaulted his sister. https://i.rdrama.net/images/17118241526738973.webp https://i.rdrama.net/images/17118241426254768.webp https://i.rdrama.net/images/17156480765435808.webp

Jump in the discussion.

No email address required.

Flash was something else. I don't know wtf they must have been doing with their code. It was a new vulnerability every week.

Jump in the discussion.

No email address required.

yeah it was crazy. And it was a fun little tool too in the 90s/early 2000s


Krayon sexually assaulted his sister. https://i.rdrama.net/images/17118241526738973.webp https://i.rdrama.net/images/17118241426254768.webp https://i.rdrama.net/images/17156480765435808.webp

Jump in the discussion.

No email address required.

Xoomer

Jump in the discussion.

No email address required.

lol guilty.


Krayon sexually assaulted his sister. https://i.rdrama.net/images/17118241526738973.webp https://i.rdrama.net/images/17118241426254768.webp https://i.rdrama.net/images/17156480765435808.webp

Jump in the discussion.

No email address required.

Total Xoomer Death

Jump in the discussion.

No email address required.

Well that's just very rude!

https://media.giphy.com/media/o9qT6CP4XyICY/giphy.webp


Krayon sexually assaulted his sister. https://i.rdrama.net/images/17118241526738973.webp https://i.rdrama.net/images/17118241426254768.webp https://i.rdrama.net/images/17156480765435808.webp

Jump in the discussion.

No email address required.

adobe is notorious for bloated code bases, no idea with macromedia tho

Jump in the discussion.

No email address required.

Link copied to clipboard
Action successful!
Error, please refresh the page and try again.