The Telegram app 7.6.2 for iOS allows remote authenticated users to cause a denial of service (application crash) if the victim pastes an attacker-supplied message (e.g., in the Persian language) into a channel or group. The crash occurs in MtProtoKitFramework.
References
| Link | Resource |
|---|---|
| https://t.me/joinchat/bJ9cnUosVh03ZTI0 | Vendor Advisory |
| https://gist.github.com/raminfp/bf64c2974ee6949787329749148a4b31 | Exploit Third Party Advisory |
Configurations
Information
Published : 2021-04-20 16:15
Updated : 2021-04-24 03:45
NVD link : CVE-2021-30496
Mitre link : CVE-2021-30496
JSON object : View
Products Affected
telegram
- telegram
CWE
