First published: Wed Sep 22 2021(Updated: )
LINE client for iOS before 11.15.0 might expose authentication information for a certain service to external entities under certain conditions. This is usually impossible, but in combination with a server-side bug, attackers could get this information.
Credit: dl_cve@linecorp.com
Affected Software | Affected Version | How to fix |
---|---|---|
Linecorp Line | <11.15.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-41011 is a vulnerability in the LINE client for iOS before version 11.15.0 that could expose authentication information for a certain service to external entities.
CVE-2021-41011 has a severity rating of high, with a CVSS score of 7.5.
Attackers can exploit CVE-2021-41011 by taking advantage of a combination of a client-side vulnerability and a server-side bug to obtain authentication information from the LINE client for iOS.
Versions before 11.15.0 of the LINE client for iOS are affected by CVE-2021-41011.
To fix CVE-2021-41011, it is recommended to update the LINE client for iOS to version 11.15.0 or later.