Denial of Service Vulnerability in Telegram Desktop by Telegram
CVE-2018-17231

7.5HIGH

Key Information:

Vendor

Telegram

Vendor
CVE Published:
19 September 2018

What is CVE-2018-17231?

A vulnerability in Telegram Desktop version 1.3.14 could be exploited by manipulating an 'Edit color palette' search, triggering an 'index out of range' condition. This flaw may lead to an assertion failure and cause the application to exit unexpectedly. Although this issue has been noted by multiple third parties, leading to disputes over its legitimacy and exploitability, it represents a potential risk for users operating the affected version.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.