Vulnerabilities (CVE)

Filtered by vendor Savoirfairelinux Subscribe
Filtered by product Jami
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-3434 2 Microsoft, Savoirfairelinux 2 Windows, Jami 2024-02-28 N/A 5.4 MEDIUM
Improper Input Validation in the hyperlink interpretation in Savoir-faire Linux's Jami (version 20222284) on Windows. This allows an attacker to send a custom HTML anchor tag to pass a string value to the Windows QRC Handler through the Jami messenger.
CVE-2023-3433 1 Savoirfairelinux 1 Jami 2024-02-28 N/A 5.5 MEDIUM
The "nickname" field within Savoir-faire Linux's Jami application is susceptible to a failed state when a user inserts special characters into the field. When present, these special characters, make it so the application cannot create the signature for the user and results in a local denial of service to the application.