CVE-2023-33983
24.05.2023, 18:15
The Introduction Client in Briar through 1.5.3 does not implement out-of-band verification for the public keys of introducees. An introducer can launch man-in-the-middle attacks against later private communication between two introduced parties.Enginsight
Vendor | Product | Version |
---|---|---|
briarproject | briar | 𝑥 ≤ 1.5.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration