vulnerability
FreeBSD: VID-E4D93D07-297A-11ED-95F8-901B0E9408DC (CVE-2022-36060): Matrix clients -- several vulnerabilities
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
5 | (AV:N/AC:L/Au:N/C:N/I:N/A:P) | Aug 31, 2022 | Nov 4, 2022 | Jan 28, 2025 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Aug 31, 2022
Added
Nov 4, 2022
Modified
Jan 28, 2025
Description
Details for this vulnerability have not been published by NIST at this point. Descriptions from software vendor advisories for this issue are provided below.
From VID-E4D93D07-297A-11ED-95F8-901B0E9408DC:
Matrix developers report:
The vulnerabilities give an adversary who you share a
room with the ability to carry out a denial-of-service
attack against the affected clients, making it not show all
of a user's rooms or spaces and/or causing minor temporary
corruption.
Solution(s)
freebsd-upgrade-package-cinnyfreebsd-upgrade-package-element-web
References

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.