• CVE-2022-39248 | matrix-android-sdk2 up to 1.5.0 Message key exchange

    From Security Bot@2:467/888.88 to All on Wed Oct 18 23:10:08 2023


    Title: CVE-2022-39248 | matrix-android-sdk2 up to 1.5.0 Message key exchange without entity authentication (GHSA-fpgf-pjjv-2qgm)
    Description: A vulnerability was found in matrix-android-sdk2 up to 1.5.0. It has been rated as critical. Affected by this issue is some unknown functionality of the component Message Handler. The manipulation leads to key exchange without entity authentication.
    Link: https://vuldb.com/?id.209744
    Thu, 29 Sep 2022 08:45:27 +0200


    --- The information is for informational purposes only.
    * Origin: Read us with http://winpoint.org/ (2:467/888.88)