Oddbean new post about | logout
 nostr:npub1vcl9kcqwwsk536z8s4h6k48qrfkm7mahzrk5mz0v04j94507d20s6hk6t3 I am equally concerned about CVE-2023-42657. CVE-2023-40044 only affects those with the ad-hoc file transfer service, but the directory traversal potentially affects everyone. 

That said, I have ready others say the exploit for CVE-2023-40044 is fairly trivial (not sure if that's true), but I have read nothing about reproducing CVE-2023-42657.