Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xcg9-fw4f-9chv

Опубликовано: 05 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.7

Описание

The KDE Connect protocol 8 before 2025-11-28 does not correlate device IDs across two packets. This affects KDE Connect before 25.12 on desktop, KDE Connect before 0.5.4 on iOS, KDE Connect before 1.34.4 on Android, GSConnect before 68, and Valent before 1.0.0.alpha.49.

The KDE Connect protocol 8 before 2025-11-28 does not correlate device IDs across two packets. This affects KDE Connect before 25.12 on desktop, KDE Connect before 0.5.4 on iOS, KDE Connect before 1.34.4 on Android, GSConnect before 68, and Valent before 1.0.0.alpha.49.

EPSS

Процентиль: 9%
0.00031
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-290

Связанные уязвимости

CVSS3: 4.7
ubuntu
2 месяца назад

The KDE Connect protocol 8 before 2025-11-28 does not correlate device IDs across two packets. This affects KDE Connect before 25.12 on desktop, KDE Connect before 0.5.4 on iOS, KDE Connect before 1.34.4 on Android, GSConnect before 68, and Valent before 1.0.0.alpha.49.

CVSS3: 4.7
nvd
2 месяца назад

The KDE Connect protocol 8 before 2025-11-28 does not correlate device IDs across two packets. This affects KDE Connect before 25.12 on desktop, KDE Connect before 0.5.4 on iOS, KDE Connect before 1.34.4 on Android, GSConnect before 68, and Valent before 1.0.0.alpha.49.

CVSS3: 4.7
debian
2 месяца назад

The KDE Connect protocol 8 before 2025-11-28 does not correlate device ...

EPSS

Процентиль: 9%
0.00031
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-290