Critical WebP bug: many apps, not just browsers, under threat

MoralTG

https://t.me/BorrowOG
MoralTG Rep
33
1
1
Rep
84
MoralTG Vouches
39
0
0
Vouches
39
2 YEAR
2 YEAR OF SERVICE
Divine
MoralTG Rep
33
1
1
Rep
84
MoralTG Vouches
39
0
0
Vouches
39
Posts
613
Likes
89
Bits
2 YEAR
2 YEAR OF SERVICE
LEVEL 6 8,800 XP
 
What does it mean tho
 

baka

Lolicon
baka Rep
24
0
0
Rep
68
baka Vouches
2
0
0
Vouches
2
2 YEAR
2 YEAR OF SERVICE
Divine
baka Rep
24
0
0
Rep
68
baka Vouches
2
0
0
Vouches
2
Posts
459
Likes
1,631
Bits
2 YEAR
2 YEAR OF SERVICE
LEVEL 16 100,825 XP
 
What does it mean tho
WebP 0-day means that there is a previously unknown and unpatched security vulnerability in software or systems that handle WebP images, and this vulnerability is actively being exploited by attacker by crafting malicious WebP images and getting victims to open them, attackers could leverage this bug to execute arbitrary code and access sensitive user data.

To give you an idea of how much this is, here is a short list of common apps that are impacted by this:
  • 1Password
  • Bitwarden
  • CrashPlan
  • Discord
  • GitHub Desktop
  • GitKraken
  • Keybase
  • Logitech Options+
  • Microsoft Teams
  • MongoDB Compass
  • Mullvad
  • Signal
  • Skype
  • Slack
  • Termius
  • TIDAL
  • Twitch
  • Visual Studio Code
 
Live Activity
No one is currently typing
Top