You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I've been able to just manually bind separate libraries patched to latest into the FreeImage library so we might be able to continue with FreeImage for a little longer - without compiling the packaged source for those libraries.
Initial Test with LibPNG as many other frameworks/libraries are using it and shared packaged lib made sense.
Especially with the Pegasus disaster we know pngs with payloads to Remote execution, we need these libraries up to date.
FreeImage is, unfortunately very slow at updating sub-dependencies which leads to many CVE's exposed and unpatched.
I've tried to keep it up to date but.. easier to just jump into a fresh new ImageIO system.
It's worth checking in future swap out to OpenImageIO or other options
https://github.com/AcademySoftwareFoundation/OpenImageIO
If you are aware of any up to date Image IO systems to evaluate please drop them in here
The text was updated successfully, but these errors were encountered: