Thank you for your donation!


Cloudsmith graciously provides open-source package management and distribution for our project.


Upcoming moOde 9.1.0 release
#8
(09-12-2024, 04:49 PM)TheOldPresbyope Wrote: I've had a few downloaded tracks which contained tons of "useful" metadata such as lyrics which gave me various problems but I'm guessing music files aren't a common attack vector. That could change as soon as the bad guys uncover a related vulnerability in some popular music app, though.

"Trust no string" is, was, and always shall be the motto. I'm amazed at how many software vulnerabilities get reported each year which come down to violation of this principle.

Regards,
Kent

Implementing and testing security mitigation is very complex, expensive and time consuming which is why virtually all software has vulnerabilities. Even the Tech giants with their Trillions $$$ end up with serious vulnerabilities.

I think upcoming 9.1 will at least have some defense against Code and SQL injection and stored XSS but there would need to be some serious attack vector hacking to see what really happens. Maybe someone will become interested.
Enjoy the Music!
moodeaudio.org | Mastodon Feed | GitHub
Reply


Messages In This Thread
Upcoming moOde 9.1.0 release - by Tim Curtis - 09-06-2024, 08:55 PM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-07-2024, 04:16 PM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-09-2024, 09:47 PM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-12-2024, 02:16 PM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-12-2024, 03:58 PM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-12-2024, 06:13 PM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-13-2024, 01:54 PM
RE: Upcoming moOde 9.1.0 release - by kurt1970 - 09-13-2024, 04:37 PM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-13-2024, 04:42 PM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-13-2024, 06:37 PM
RE: Upcoming moOde 9.1.0 release - by Sehnsucht - 09-13-2024, 10:46 PM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-14-2024, 10:23 AM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-14-2024, 12:51 PM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-14-2024, 01:16 PM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-14-2024, 03:12 PM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-14-2024, 07:26 PM
RE: Upcoming moOde 9.1.0 release - by LeighP - 09-14-2024, 07:04 PM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-14-2024, 08:54 PM
RE: Upcoming moOde 9.1.0 release - by Tim Curtis - 09-14-2024, 08:54 PM

Forum Jump: