oh, upcoming #telegram #zeroday looks pretty bad. unauthenticated, remote code execution.

CVSS 9.8 Critical -- AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H. Translation: unauthenticated, remotely exploitable, zero user interaction, full CIA compromise. No credentials needed, no special conditions, no victim to trick. The attacker owns your data, can modify anything, and can take the service offline.

#infosec #CVE #vulnerability

https://www.zerodayinitiative.com/advisories/upcoming/

Upcoming | Zero Day Initiative

@km
do we know if it also affects Forkgram?
https://github.com/forkgram/TelegramAndroid
GitHub - forkgram/TelegramAndroid: Fork client of Telegram app for Android.

Fork client of Telegram app for Android. Contribute to forkgram/TelegramAndroid development by creating an account on GitHub.

GitHub