Improper verification of applications' cryptographic...
Moderate severity
Unreviewed
Published
Aug 22, 2023
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Aug 22, 2023
Published to the GitHub Advisory Database
Aug 22, 2023
Last updated
Apr 4, 2024
Improper verification of applications' cryptographic signatures in the /e/OS app store client App Lounge before 0.19q allows attackers in control of the application server to install malicious applications on user's systems by altering the server's API response.
References