First published: Thu Oct 12 2023(Updated: )
Lack of TLS certificate verification in log transmission of a financial module within LINE Client for iOS prior to 13.16.0.
Credit: dl_cve@linecorp.com dl_cve@linecorp.com
Affected Software | Affected Version | How to fix |
---|---|---|
LINE | <13.16.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-5554 is critical with a severity value of 9.8.
CVE-2023-5554 affects LINE Client for iOS versions prior to 13.16.0, allowing lack of TLS certificate verification in log transmission of a financial module.
To fix CVE-2023-5554 in LINE Client for iOS, update to version 13.16.0 or later.
The Common Weakness Enumeration (CWE) identifier of CVE-2023-5554 is CWE-295.
You can find more information about CVE-2023-5554 at https://hackerone.com/reports/2106827.