NekoX icon indicating copy to clipboard operation
NekoX copied to clipboard

[Security] F-Droid marks the app as vulnerable

Open angeousta opened this issue 1 year ago • 3 comments

immagine

F-Droid recommends to uninstall the app

angeousta avatar Oct 29 '23 09:10 angeousta

it's because of the libwebp vulnerability. there's a version released in f-droid that patches it.

errorgurumeditation avatar Nov 02 '23 21:11 errorgurumeditation

Do you have any source on the vulnerability and the patch?

angeousta avatar Nov 03 '23 12:11 angeousta

Do you have any source on the vulnerability and the patch?

info on the f-droid build can be found here

unfortunately it looks like other versions of nekox are still vulnerable, though the dev seems to be aware of this

errorgurumeditation avatar Nov 03 '23 20:11 errorgurumeditation