WebP Codec's heap buffer overflow vulnerability (CVE-2023-4863)
-
Hi Team,
We discover that the WebP Codec's heap buffer overflow vulnerability (CVE-2023-4863) is currently being extensively exploited in the wild. Here, I would require a confirmation from your end as to whether or not this vulnerability affects our pfsense? -
Isn't that specifically against Google Chrome/Chromium browser?
-
Yes, that's a vulnerability in Chrome and other Chrome-based browsers. Completely unrealted to pfSense.
Unless you've somehow installed Chrome in pfSense but I can't begin to imagine what that would require. Or why you would do it!
Steve
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.