Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-22779

Опубликовано: 09 фев. 2022
Источник: nvd
CVSS3: 3.7
CVSS2: 4.3
EPSS Низкий

Описание

The Keybase Clients for macOS and Windows before version 5.9.0 fails to properly remove exploded messages initiated by a user. This can occur if the receiving user switches to a non-chat feature and places the host in a sleep state before the sending user explodes the messages. This could lead to disclosure of sensitive information which was meant to be deleted from a user’s filesystem.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:keybase:keybase:*:*:*:*:*:*:*:*
Версия до 5.9.0 (исключая)

Одно из

cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

EPSS

Процентиль: 44%
0.00212
Низкий

3.7 Low

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-212

Связанные уязвимости

CVSS3: 3.7
github
почти 4 года назад

The Keybase Clients for macOS and Windows before version 5.9.0 fails to properly remove exploded messages initiated by a user. This can occur if the receiving user switches to a non-chat feature and places the host in a sleep state before the sending user explodes the messages. This could lead to disclosure of sensitive information which was meant to be deleted from a user’s filesystem.

EPSS

Процентиль: 44%
0.00212
Низкий

3.7 Low

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-212