Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-27351

Опубликовано: 19 фев. 2021
Источник: debian

Описание

The Terminate Session feature in the Telegram application through 7.2.1 for Android, and through 2.4.7 for Windows and UNIX, fails to invalidate a recently active session.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
telegram-desktopfixed2.6.1-1package
telegram-desktopnot-affectedbusterpackage

Примечания

  • https://0ffsecninja.github.io/Telegram:CVE-2021-2735.html

  • Probably fixed earlier than 2.6.1, but marking that fixed in absence of further details

  • (maintainer reached out to upstream for confirmation that 2.6.1 is fixed and buster

  • not affected)

Связанные уязвимости

CVSS3: 5.3
ubuntu
почти 5 лет назад

The Terminate Session feature in the Telegram application through 7.2.1 for Android, and through 2.4.7 for Windows and UNIX, fails to invalidate a recently active session.

CVSS3: 5.3
nvd
почти 5 лет назад

The Terminate Session feature in the Telegram application through 7.2.1 for Android, and through 2.4.7 for Windows and UNIX, fails to invalidate a recently active session.

CVSS3: 5.3
github
больше 3 лет назад

The Terminate Session feature in the Telegram application through 7.2.1 for Android, and through 2.4.7 for Windows and UNIX, fails to invalidate a recently active session.