ALT-PU-2024-4879-1
Package dino updated to version 0.4.3-alt1 for branch sisyphus_e2k.
Closed vulnerabilities
Published: 2023-03-24
Modified: 2025-02-20
Modified: 2025-02-20
CVE-2023-28686
Dino before 0.2.3, 0.3.x before 0.3.2, and 0.4.x before 0.4.2 allows attackers to modify the personal bookmark store via a crafted message. The attacker can change the display of group chats or force a victim to join a group chat; the victim may then be tricked into disclosing sensitive information.
Severity: HIGH (7.1)
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:N
References: