Pict-rs updated to 0.4.3
Pict-rs updated to 0.4.3
The main feature being a fix the really nasty libwebp vulnerability.
3
comments
Where did you find a changelog for pict-rs? I can't find anywhere that lists details on 0.4.3, there don't seem to have been release notes published.
I don't think there's a fix for cve-2023-4863 in here. https://git.asonix.dog/asonix/pict-rs/commits/tag/v0.4.3
1Replyhttps://git.asonix.dog/asonix/pict-rs/releases/tag/v0.4.3
I think the fix was in libwebp, which got pulled with the rebuild of the image.
1ReplyThanks!
1Reply