Description
Mattermost iOS app fails to properly validate the server certificate while initializing the TLS connection allowing a network attacker to intercept the WebSockets connection.
No analysis available yet.
Remediation
Vendor Solution
Update Mattermost iOS app to version 2.5.1 or higher.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-44264 | Mattermost iOS app fails to properly validate the server certificate while initializing the TLS connection allowing a network attacker to intercept the WebSockets connection. |
References
| Link | Providers |
|---|---|
| https://mattermost.com/security-updates |
|
History
Wed, 30 Oct 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Mattermost
Published:
Updated: 2024-10-30T15:21:49.715Z
Reserved: 2023-07-11T09:05:32.504Z
Link: CVE-2023-3615
Updated: 2024-08-02T07:01:57.123Z
Status : Modified
Published: 2023-07-17T16:15:11.237
Modified: 2026-06-17T06:14:28.360
Link: CVE-2023-3615
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-295
Improper Certificate Validation
EUVD