First published: Wed Apr 09 2025(Updated: )
Kim Alvefur discovered that Dino did not correctly sanitize certain messages. A remote attacker could possibly use this issue to leak sensitive information.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/dino-im | <0.3.0-3ubuntu0.1~esm1 | 0.3.0-3ubuntu0.1~esm1 |
Ubuntu | =22.04 | |
All of | ||
ubuntu/dino-im | <0.1.0-1ubuntu0.1~esm1 | 0.1.0-1ubuntu0.1~esm1 |
Ubuntu | =20.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
USN-7430-1 is considered a medium severity vulnerability due to its potential to leak sensitive information.
To fix USN-7430-1, you should update the dino-im package to the latest version provided for your Ubuntu release.
USN-7430-1 affects the dino-im package on Ubuntu versions 20.04 and 22.04.
USN-7430-1 allows a remote attacker to potentially leak sensitive information through improperly sanitized messages.
USN-7430-1 was discovered by researcher Kim Alvefur.