Vulnerability in libwebp (CVE-2023-4863)
Siemens is aware of the heap buffer overflow vulnerability CVE-2023-4863 in Google’s libwebp library, that could be exploited by unauthenticated remote attackers, when the library is rendering maliciously crafted images in WebP format.
We are evaluating the impact to Siemens products. For Siemens products that are affected by CVE-2023-4863, corresponding security advisories (SSA) will be published as soon as the related information becomes available. The following information is currently available:
Note: Please be aware that links in the Blog Post may refer to external websites and content.