Description
Matrix libolm before 3.2.3 allows a malicious Matrix homeserver to crash a client (while it is attempting to retrieve an Olm encrypted room key backup from the homeserver) because olm_pk_decrypt has a stack-based buffer overflow. Remote code execution might be possible for some nonstandard build configurations.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-21460 | Matrix libolm before 3.2.3 allows a malicious Matrix homeserver to crash a client (while it is attempting to retrieve an Olm encrypted room key backup from the homeserver) because olm_pk_decrypt has a stack-based buffer overflow. Remote code execution might be possible for some nonstandard build configurations. |
Ubuntu USN |
USN-5194-1 | Olm vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T00:26:54.020Z
Reserved: 2021-06-16T00:00:00.000Z
Link: CVE-2021-34813
No data.
Status : Modified
Published: 2021-06-16T18:15:09.730
Modified: 2024-11-21T06:11:15.373
Link: CVE-2021-34813
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Ubuntu USN