CVE-2021-44538: Buffer Overflow

Published Dec 14, 2021
·
Updated

The olmsessiondescribe function in Matrix libolm before 3.2.7 is vulnerable to a buffer overflow. The Olm session object represents a cryptographic channel between two parties. Therefore, its state is partially controllable by the remote party of the channel. Attackers can construct a crafted sequence of messages to manipulate the state of the receiver's session in such a way that, for some buffer sizes, a buffer overflow happens on a call to olmsessiondescribe. Furthermore, safe buffer sizes were undocumented. The overflow content is partially controllable by the attacker and limited to ASCII spaces and digits. The known affected products are Element Web And SchildiChat Web.

Other sources

Thunderbird users who use the Matrix chat protocol were vulnerable to a buffer overflow in libolm, that an attacker may trigger by a crafted sequence of messages. The overflow content is partially controllable by the attacker and limited to ASCII spaces and digits.

Affected Software

13 affected componentsFixes available
debian/olm<=3.2.1~dfsg-7
2.2.2+git20170526.0fd768e+dfsg-13.2.13~dfsg-1
debian/thunderbird
1:91.12.0-1~deb10u11:115.3.1-1~deb10u11:102.13.1-1~deb11u11:115.3.1-1~deb11u11:102.15.1-1~deb12u11:115.3.1-1~deb12u11:115.3.1-1
Mozilla Thunderbird<91.4.1
91.4.1
matrix Element<1.9.7
matrix Element<1.9.7
matrix Javascript SDK>=2.4.2<15.2.1
matrix olm>=3.1.4<3.2.8
Schildi SchildiChat<1.9.7-sc1
Schildi SchildiChat<1.9.7-sc1
Cinny Project Cinny<1.6.0
Debian Debian Linux=9.0
Debian Debian Linux=10.0
Debian Debian Linux=11.0

Event History

Dec 14, 2021
CVE Published
via MITRE·01:26 PM
Data Sourced
via MITRE·01:26 PM
Description
Data Sourced
via NVD·02:15 PM
RemedyDescriptionSeverityWeaknessAffected Software

Parent advisories

This vulnerability appears in the following advisories.

Peer vulnerabilities

Found alongside the following vulnerabilities.

Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is CVE-2021-44538?

CVE-2021-44538 is a vulnerability in the Matrix libolm library that allows attackers to trigger a buffer overflow.

2

Which software products are affected by CVE-2021-44538?

CVE-2021-44538 affects Mozilla Thunderbird, Matrix Element, Matrix Javascript SDK, Schildi Schildichat, Cinny Project Cinny, and Debian Linux.

3

What is the severity of CVE-2021-44538?

CVE-2021-44538 has a severity rating of 9.8 (Critical).

4

How can I fix CVE-2021-44538?

To fix CVE-2021-44538, users should update to the latest versions of the affected software, such as Mozilla Thunderbird 91.4.1 and Matrix Element 1.9.7.

5

Where can I find more information about CVE-2021-44538?

More information about CVE-2021-44538 can be found in the Mozilla bugzilla and security advisories, as well as the Matrix libolm GitLab repository.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203