Skip to content

Merge V23.10.3 changes into development#4684

Merged
ssddanbrown merged 3 commits intodevelopmentfrom
v23-10
Dec 3, 2023
Merged

Merge V23.10.3 changes into development#4684
ssddanbrown merged 3 commits intodevelopmentfrom
v23-10

Conversation

@ssddanbrown
Copy link
Member

No description provided.

Updated image loading for intervention library to be via a specific
'initFromBinary' method to avoid being overly accepting of input types
and mechansisms.

For CVE-2023-6199
Also added content sniffing as an extra check.
Added tests to cover.
@ssddanbrown ssddanbrown added this to the Next Feature Release milestone Nov 20, 2023
@ssddanbrown ssddanbrown merged commit 596f731 into development Dec 3, 2023
@ssddanbrown ssddanbrown deleted the v23-10 branch November 8, 2024 13:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Development

Successfully merging this pull request may close these issues.

1 participant