Wire is a collaboration platform. wire-ios-transport handles authentication of requests, network failures, and retries for the iOS implementation of Wire. In the 3.82 version of the iOS application, a new web socket implementation was introduced for users running iOS 13 or higher. This new websocket implementation is not configured to enforce certificate pinning when available. Certificate pinning for the new websocket is enforced in version 3.84 or above.
References
Link | Resource |
---|---|
https://github.com/wireapp/wire-ios-transport/security/advisories/GHSA-v8mx-h3vj-w39v | Third Party Advisory |
https://github.com/wireapp/wire-ios-transport/security/advisories/GHSA-v8mx-h3vj-w39v | Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 06:07
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/wireapp/wire-ios-transport/security/advisories/GHSA-v8mx-h3vj-w39v - Third Party Advisory | |
CVSS |
v2 : v3 : |
v2 : 4.0
v3 : 5.4 |
Information
Published : 2021-07-13 21:15
Updated : 2024-11-21 06:07
NVD link : CVE-2021-32755
Mitre link : CVE-2021-32755
CVE.ORG link : CVE-2021-32755
JSON object : View
Products Affected
apple
- iphone_os
wire
- wire
CWE
CWE-295
Improper Certificate Validation