CVE-2023-39957

Updated: 2024-11-24 04:58:50.664794

Description:

Nextcloud Talk Android allows users to place video and audio calls through Nextcloud on Android. Prior to version 17.0.0, an unprotected intend allowed malicious third party apps to trick the Talk Android app into writing files outside of its intended cache directory. Nextcloud Talk Android version 17.0.0 has a patch for this issue. No known workarounds are available.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0
CVSS Version 3.x HIGH 7.8

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

CentOS 6 ELS ntalk 0.17 7.8 HIGH Not Vulnerable 2023-12-08 08:45:18
CloudLinux 6 ELS ntalk 0.17 7.8 HIGH Not Vulnerable 2023-12-08 08:45:17
Oracle Linux 6 ELS ntalk 0.17 7.8 HIGH Not Vulnerable 2023-12-08 08:45:17
Ubuntu 16.04 ELS ntalk 0.17 7.8 HIGH Not Vulnerable 2023-12-08 08:45:18