Логотип exploitDog
bind:CVE-2022-45195
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-45195

Количество 2

Количество 2

nvd логотип

CVE-2022-45195

около 3 лет назад

SimpleXMQ before 3.4.0, as used in SimpleX Chat before 4.2, does not apply a key derivation function to intended data, which can interfere with forward secrecy and can have other impacts if there is a compromise of a single private key. This occurs in the X3DH key exchange for the double ratchet protocol.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-pjv9-6jwc-5g68

около 3 лет назад

SimpleXMQ before 3.4.0, as used in SimpleX Chat before 4.2, does not apply a key derivation function to intended data, which can interfere with forward secrecy and can have other impacts if there is a compromise of a single private key. This occurs in the X3DH key exchange for the double ratchet protocol.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-45195

SimpleXMQ before 3.4.0, as used in SimpleX Chat before 4.2, does not apply a key derivation function to intended data, which can interfere with forward secrecy and can have other impacts if there is a compromise of a single private key. This occurs in the X3DH key exchange for the double ratchet protocol.

CVSS3: 5.3
0%
Низкий
около 3 лет назад
github логотип
GHSA-pjv9-6jwc-5g68

SimpleXMQ before 3.4.0, as used in SimpleX Chat before 4.2, does not apply a key derivation function to intended data, which can interfere with forward secrecy and can have other impacts if there is a compromise of a single private key. This occurs in the X3DH key exchange for the double ratchet protocol.

CVSS3: 5.3
0%
Низкий
около 3 лет назад

Уязвимостей на страницу