• CVE-2022-39246 | matrix-android-sdk2 up to 1.5.0 Message key exchange

    From Security Bot@2:467/888.88 to All on Tue Oct 17 11:10:08 2023


    Title: CVE-2022-39246 | matrix-android-sdk2 up to 1.5.0 Message key exchange without entity authentication (GHSA-2pvj-p485-cp3m)
    Description: A vulnerability was found in matrix-android-sdk2 up to 1.5.0 and classified as critical. Affected by this issue is some unknown functionality of the component Message Handler. The manipulation leads to key exchange without entity authentication.
    Link: https://vuldb.com/?id.209732
    Thu, 29 Sep 2022 08:30:47 +0200


    --- The information is for informational purposes only.
    * Origin: Read us with http://winpoint.org/ (2:467/888.88)