CVE-2022-45195

CVE-2022-45195

SimpleXMQ before 3.4.0, as used in SimpleX Chat before 4.2, does not apply a key derivation function to intended data, which can interfere with forward secrecy and can have other impacts if there is a compromise of a single private key. This occurs in the X3DH key exchange for the double ratchet protocol.

Source: CVE-2022-45195

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다