Skip to main content

Vendor/product archive

matrix / olm CVEs

Beta · best-effort

5 CVEs tagged to matrix / olm2 Critical, 0 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2024-45193

Published Aug 22, 2024

An issue was discovered in Matrix libolm through 3.2.16. There is Ed25519 signature malleability due to lack of validation criteria (does not ensure that S < n). This refers to th…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-45192

Published Aug 22, 2024

An issue was discovered in Matrix libolm through 3.2.16. Cache-timing attacks can occur due to use of base64 when decoding group session keys. This refers to the libolm implementa…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-45191

Published Aug 22, 2024

An issue was discovered in Matrix libolm through 3.2.16. The AES implementation is vulnerable to cache-timing attacks due to use of S-boxes. This is related to software that uses…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-34813

Published Jun 16, 2021

Matrix libolm before 3.2.3 allows a malicious Matrix homeserver to crash a client (while it is attempting to retrieve an Olm encrypted room key backup from the homeserver) because…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1