Vulnerabilities > Telegram > Telegram > 4.9.1

DATE CVE VULNERABILITY TITLE RISK
2021-07-17 CVE-2021-36769 Unspecified vulnerability in Telegram and Telegram Desktop
A reordering issue exists in Telegram before 7.8.1 for Android, Telegram before 7.8.3 for iOS, and Telegram Desktop before 2.8.8.
network
low complexity
telegram
5.3
2021-05-18 CVE-2021-31315 Out-of-bounds Write vulnerability in Telegram
Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Stack Based Overflow in the blit function of their custom fork of the rlottie library.
network
telegram CWE-787
4.3
2021-05-18 CVE-2021-31317 Type Confusion vulnerability in Telegram
Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Type Confusion in the VDasher constructor of their custom fork of the rlottie library.
network
telegram CWE-843
4.3
2021-05-18 CVE-2021-31318 Type Confusion vulnerability in Telegram
Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Type Confusion in the LOTCompLayerItem::LOTCompLayerItem function of their custom fork of the rlottie library.
network
telegram CWE-843
4.3
2021-05-18 CVE-2021-31319 Integer Overflow or Wraparound vulnerability in Telegram
Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by an Integer Overflow in the LOTGradient::populate function of their custom fork of the rlottie library.
network
telegram CWE-190
4.3
2021-05-18 CVE-2021-31320 Out-of-bounds Write vulnerability in Telegram
Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Heap Buffer Overflow in the VGradientCache::generateGradientColorTable function of their custom fork of the rlottie library.
network
telegram CWE-787
5.8
2021-05-18 CVE-2021-31321 Out-of-bounds Write vulnerability in Telegram
Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Stack Based Overflow in the gray_split_cubic function of their custom fork of the rlottie library.
network
telegram CWE-787
5.8
2021-05-18 CVE-2021-31322 Out-of-bounds Write vulnerability in Telegram
Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Heap Buffer Overflow in the LOTGradient::populate function of their custom fork of the rlottie library.
network
telegram CWE-787
4.3
2021-05-18 CVE-2021-31323 Out-of-bounds Write vulnerability in Telegram
Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Heap Buffer Overflow in the LottieParserImpl::parseDashProperty function of their custom fork of the rlottie library.
network
telegram CWE-787
4.3
2021-02-19 CVE-2021-27351 Insufficient Session Expiration vulnerability in Telegram
The Terminate Session feature in the Telegram application through 7.2.1 for Android, and through 2.4.7 for Windows and UNIX, fails to invalidate a recently active session.
network
low complexity
telegram CWE-613
5.0