this post was submitted on 11 Apr 2024
28 points (91.2% liked)
F-Droid
8069 readers
32 users here now
F-Droid is an installable catalogue of FOSS (Free and Open Source Software) applications for the Android platform. The client makes it easy to browse, install, and keep track of updates on your device.
Matrix space | forum | IRC
founded 3 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
Which likely uses one of the extremely common libraries for image parsing which are much more likely to be targeted. And profile pictures enter your contacts from all kinds of online sources.
btw you know what's the beauty of open source? That you can take the source and update the vulnerable library to a nightly updated 2 hours ago, if it's that important for you.
I guess you're watching every month that all your apps are updated to the latest version. "OMG this app hasn't been updated in the last 6 weeks, IMMEDIATE UNINSTALL!!!!"
For me, the chance that one of my contact pics contain an exploit (i would mean that i manually did it, i don't use online services) my is lower than getting hit by an asteroid, so i accept the risk.
Goodness, someone got out of bed on the wrong side this morning. I remember when this app came out! I'm pretty sure some of my contacts still have the pictures.