ELA-971-1 libwebp security update

Heap buffer overflow

2023-09-29
Packagelibwebp
Version0.5.2-1+deb9u3 (stretch)
Related CVEs CVE-2023-4863


A buffer overflow in parsing WebP images may result in the execution of arbitrary code.



For Debian 9 stretch, these problems have been fixed in version 0.5.2-1+deb9u3.

We recommend that you upgrade your libwebp packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.