CVE-2018-9840
Summary
| CVE | CVE-2018-9840 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-04-10 05:29:00 UTC |
| Updated | 2019-10-03 00:03:00 UTC |
| Description | The Open Whisper Signal app before 2.23.2 for iOS allows physically proximate attackers to bypass the screen locker feature via certain rapid sequences of actions that include app opening, clicking on cancel, and using the home button. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| 404 Not Found | MISC | nint.en.do | Broken Link, Third Party Advisory |
| Merge remote-tracking branch 'origin/charlesmchen/screenLockRework_' … · signalapp/Signal-iOS@018a35d · GitHub | MISC | github.com | Patch, Third Party Advisory |
| Commits · signalapp/Signal-iOS · GitHub | MISC | github.com | Issue Tracking, Patch, Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.