MeatAndSarcasmGuy

joined 1 year ago
 

Image transcription:

Garak from Deep Space 9 with a speech bubble leading to a tweet from March 20, 2023 reading "iโ€™m the only bitch serving cunt here ๐Ÿ˜ญ๐Ÿ˜ญ๐Ÿ˜ญ omg ๐Ÿ˜ญ iโ€™m soooo embarrassed ๐Ÿ˜ญ๐Ÿ˜ญ"

Oh that's interesting. I thought it would be through the app, since the article mentioned being patched in browsers; so that's definitely good to know.

 

I recently saw an article (https://stackdiary.com/heap-buffer-overflow-in-libwebp-cve-2023-5129/) that said WEBP images could be a huge security hole right now and I know Lemmy uses a lot of WEBP images.

I'm not sure how long this has been known, so maybe the Liftoff devs already took care of it. Does anyone know if Liftoff has already made the necessary patches?

As I said, I wound up on Fennec F-Droid to get the unsupported extension; but if you have any recommendations on browsers on F-Droid that can streamline the process, I would certainly be interested in hearing about them!

[โ€“] MeatAndSarcasmGuy@lemmy.world 0 points 1 year ago (2 children)

It's incredibly difficult to get the non-mobile-approved extensions added to Firefox. I remember it took me a couple of hours to get it configured and I had to change my browser to the nightly version, which I did not want to do for stability reasons.

It was even more difficult to install "unsupported" browser extensions. I had to install a very old version of Fennec F-Droid, install the extension, then update to the most current version of Fennec to keep the extension. Through trial and error across several different Firefox versions, I probably wasted 3 hours getting it set up on my phone.

If you are not motivated and tech savvy (ish), the chances of getting a non-supported extension on Firefox are quite slim.