https://bugs.documentfoundation.org/show_bug.cgi?id=157231

            Bug ID: 157231
           Summary: webp 0-day CVE-2023-4863 affect LO?
           Product: LibreOffice
           Version: unspecified
          Hardware: All
                OS: All
            Status: UNCONFIRMED
          Severity: normal
          Priority: medium
         Component: Draw
          Assignee: [email protected]
          Reporter: [email protected]

CVE-2023-4863 is a 0-day for webp (libwebp) that everybody is panic patching.
LO accepts webp. If it uses Google's libwebp or something descended from it, it
may be affected. I am not a coder, so it would do no good for me to look at the
source. Please check. See
https://arstechnica.com/security/2023/09/with-0-days-hitting-chrome-ios-and-dozens-more-this-month-is-no-software-safe/

-- 
You are receiving this mail because:
You are the assignee for the bug.

Reply via email to