First published: Thu Nov 02 2023(Updated: )
Mattermost Desktop fails to correctly handle permissions or prompt the user for consent on certain sensitive ones allowing media exploitation from a malicious mattermost server
Credit: responsibledisclosure@mattermost.com
Affected Software | Affected Version | How to fix |
---|---|---|
<5.5.1 |
Update Mattermost Desktop to versions 5.5.1 or higher.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-5875 is a vulnerability that allows media exploitation from a malicious Mattermost server in Mattermost Desktop versions up to and excluding 5.5.1.
CVE-2023-5875 has a severity rating of 5.3, which is medium.
The affected software for CVE-2023-5875 is Mattermost Desktop up to and excluding version 5.5.1.
To fix CVE-2023-5875, it is recommended to update Mattermost Desktop to a version that is after 5.5.1.
You can find more information about CVE-2023-5875 at the following reference: [https://mattermost.com/security-updates](https://mattermost.com/security-updates).