First published: Wed Sep 19 2018(Updated: )
** DISPUTED ** Telegram Desktop (aka tdesktop) 1.3.14 might allow attackers to cause a denial of service (assertion failure and application exit) via an "Edit color palette" search that triggers an "index out of range" condition. NOTE: this issue is disputed by multiple third parties because the described attack scenario does not cross a privilege boundary.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Telegram Telegram Desktop | =1.3.14 | |
=1.3.14 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-17231 is high with a CVSS score of 7.5.
CVE-2018-17231 affects Telegram Desktop 1.3.14.
Attackers can cause a denial of service (assertion failure and application exit) by triggering an "index out of range" condition through an "Edit color palette" search.
Yes, CVE-2018-17231 is a disputed vulnerability by multiple third parties.
There is no information available about a fix for CVE-2018-17231 at the moment.