CVE-2022-39252
Summary
| CVE | CVE-2022-39252 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-09-29 15:15:00 UTC |
| Updated | 2022-10-03 19:30:00 UTC |
| Description | matrix-rust-sdk is an implementation of a Matrix client-server library in Rust, and matrix-sdk-crypto is the Matrix encryption library. Prior to version 0.6, when a user requests a room key from their devices, the software correctly remembers the request. When the user receives a forwarded room key, the software accepts it without checking who the room key came from. This allows homeservers to try to insert room keys of questionable validity, potentially mounting an impersonation attack. Version 0.6 fixes this issue. |
Risk And Classification
Problem Types: CWE-287 | CWE-322
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Matrix | Matrix-rust-sdk | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| When receiving forwarded room keys, we don't check that the forwarder device matches the device we requested from · Advisory · matrix-org/matrix-rust-sdk · GitHub | CONFIRM | github.com | |
| Release 2022-09-28 - Matrix SDK 0.6.0 · matrix-org/matrix-rust-sdk · GitHub | MISC | github.com | |
| test(crypto): Test that we reject forwarded room keys from other users · matrix-org/matrix-rust-sdk@41449d2 · GitHub | MISC | github.com | |
| fix(crypto): Only accept forwarded room keys from our own trusted dev… · matrix-org/matrix-rust-sdk@093fb5d · GitHub | MISC | github.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.