Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w4pr-4vjg-hffh

Опубликовано: 30 сент. 2022
Источник: github
Github: Прошло ревью
CVSS3: 8.6

Описание

When matrix-nio receives forwarded room keys, the receiver doesn't check if it requested the key from the forwarder

When matrix-nio before 0.20 requests a room key from our devices, it correctly accepts key forwards only if they are a response to a previous request. However, it doesn't check that the device that responded matches the device the key was requested from.

This allows a malicious homeserver to insert room keys of questionable validity into the key store in some situations, potentially assisting in an impersonation attack.

For more information

If you have any questions or comments about this advisory, e-mail us at poljar@termina.org.uk.

Пакеты

Наименование

matrix-nio

pip
Затронутые версииВерсия исправления

< 0.20

0.20

EPSS

Процентиль: 46%
0.00233
Низкий

8.6 High

CVSS3

Дефекты

CWE-287
CWE-322

Связанные уязвимости

CVSS3: 8.6
ubuntu
больше 3 лет назад

matrix-nio is a Python Matrix client library, designed according to sans I/O principles. Prior to version 0.20, when a users requests a room key from their devices, the software correctly remember the request. Once they receive a forwarded room key, they accept it without checking who the room key came from. This allows homeservers to try to insert room keys of questionable validity, potentially mounting an impersonation attack. Version 0.20 fixes the issue.

CVSS3: 8.6
nvd
больше 3 лет назад

matrix-nio is a Python Matrix client library, designed according to sans I/O principles. Prior to version 0.20, when a users requests a room key from their devices, the software correctly remember the request. Once they receive a forwarded room key, they accept it without checking who the room key came from. This allows homeservers to try to insert room keys of questionable validity, potentially mounting an impersonation attack. Version 0.20 fixes the issue.

CVSS3: 8.6
debian
больше 3 лет назад

matrix-nio is a Python Matrix client library, designed according to sa ...

EPSS

Процентиль: 46%
0.00233
Низкий

8.6 High

CVSS3

Дефекты

CWE-287
CWE-322