Improper verification of cryptographic signature issue exists in "FreeFrom - the nostr client" App versions prior to 1.3.5 for Android and iOS. The affected app cannot detect event data with invalid signatures.
References
Configurations
No configuration.
History
21 Nov 2024, 09:21
Type | Values Removed | Values Added |
---|---|---|
References | () https://apps.apple.com/us/app/freefrom-the-nostr-client/id6446819930 - | |
References | () https://freefrom.space/ - | |
References | () https://jvn.jp/en/jp/JVN55045256/ - | |
References | () https://play.google.com/store/apps/details?id=com.freefrom - |
02 Aug 2024, 04:35
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
03 Jul 2024, 02:03
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.1 |
CWE | CWE-347 |
17 Jun 2024, 12:42
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
17 Jun 2024, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-06-17 08:15
Updated : 2024-11-21 09:21
NVD link : CVE-2024-36277
Mitre link : CVE-2024-36277
CVE.ORG link : CVE-2024-36277
JSON object : View
Products Affected
No product.
CWE
CWE-347
Improper Verification of Cryptographic Signature