| ▲ | rietta 2 hours ago | |||||||
I am not sure, but my read on the original disclosure is no. libvips itself has a variant processor for matlab v5 files, which the exploit took advantage of. | ||||||||
| ▲ | kawsper 2 hours ago | parent [-] | |||||||
libvips also have a block_untrusted mode where it will block unsafe loaders, .mat seems to be marked as untrusted: | ||||||||
| ||||||||