fresco
fresco copied to clipboard
libjpeg-turbo-1.5.3 的CVE-2018-14498 和CVE-2020-17541 漏洞
We use GitHub Issues for bugs.
If you have a non-bug question, please ask on Stack Overflow: http://stackoverflow.com/questions/tagged/fresco
--- Please use this template, and delete everything above this line before submitting your issue ---
Description
nativeimagetranscoder 使用的libjpeg-turbo-1.5.3 的CVE-2018-14498 和CVE-2020-17541 漏洞,什么时候可以升级下
Reproduction
[FILL THIS OUT: How can we reproduce the bug? Provide URLs to relevant images if possible, or a sample project.]
Solution
[OPTIONAL: Do you know what needs to be done to address this issue? Ideally, provide a pull request which fixes this issue.]
Additional Information
- Fresco version: [FILL THIS OUT]
- Platform version: [FILL THIS OUT: specific to a particular Android version? Device?]
When Can I Upgrade the libjpeg-turbo Version? Because one of our projects scanned for two vulnerabilities in libjpeg turbo while relying on webpsupport. What we found in the new version of libjpeg-turbo libjpeg-turbo v1.5.3 CVE-2020-17541, libjpeg-turbo v1.5.3 CVE-2018-14498
is there any plan?
Can you update libjpeg-turbo v1.5.3 to the latest version to resolve these two vulnerabilities?
Hey there, it looks like there has been no activity on this issue recently. Has the issue been fixed, or does it still require the community's attention? This issue may be closed if no further activity occurs. You may also label this issue as "bug" or "enhancement" and I will leave it open. Thank you for your contributions.
Duplicates https://github.com/facebook/fresco/issues/2482