CVE-2021-47793

Name
CVE-2021-47793
Description
Telegram Desktop 2.9.2 contains a denial of service vulnerability that allows attackers to crash the application by sending an oversized message payload. Attackers can generate a 9 million byte buffer and paste it into the messaging interface to trigger an application crash.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
product https://telegram.org
exploit https://www.exploit-db.com/exploits/50247
third-party-advisory https://www.vulncheck.com/advisories/telegram-desktop-denial-of-service-poc

Match rules

CPE URI Source package Min version Max version
telegram-desktop == 2.9.2 == None
cpe:2.3:a:telegram:telegram_desktop:2.9.2:*:*:*:*:*:*:* telegram_desktop == None == 2.9.2

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
telegram-desktop edge-community 6.4.2-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.4.1-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.4.0-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.3.9-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.3.6-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.3.4-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.3.3-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.3.2-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.3.1-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.3.0-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.2.4-r1 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.2.4-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.2.3-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.2.2-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.2.0-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.1.4-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.1.3-r3 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.1.3-r1 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.1.3-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.1.2-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.1.1-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.1.0-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.0.2-r1 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.0.2-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 6.0.0-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.16.6-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.16.4-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.16.3-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.16.2-r1 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.16.2-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.16.1-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.15.4-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.15.3-r1 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.15.3-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.15.1-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.14.3-r1 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.14.3-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.13.1-r2 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.13.1-r1 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.13.1-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.13.0-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.12.3-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.11.1-r1 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.11.1-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.10.7-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.10.6-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.10.5-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.10.4-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.10.3-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.10.1-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.10.0-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.9.0-r1 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop edge-community 5.9.0-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable
telegram-desktop 3.23-community 6.3.4-r0 Milan P. Stanić <mps@arvanta.net> possibly vulnerable