CyberSec.Space Logo
CVEブラウザに戻る

CVE-2019-17192

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.1400%
EPSS Percentile8.85th
Published2019年10月5日
Last Modified2024年11月21日

Vulnerability Description

The WebRTC component in the Signal Private Messenger application through 4.47.7 for Android processes videoconferencing RTP packets before a callee chooses to answer a call, which might make it easier for remote attackers to cause a denial of service or possibly have unspecified other impact via malformed packets. NOTE: the vendor plans to continue this behavior for performance reasons unless a WebRTC design change occurs

Affected Platforms (CPE)

📦
Signal

Private Messenger

<= 4.47.7

References & Advisories

関連する脆弱性情報