📦 Olm

by Matrix

🔍 What is Olm?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-44538

CRITICAL CVSS 9.8 Dec 14, 2021

A buffer overflow vulnerability in Matrix libolm's olm_session_describe function allows remote attackers to execute arbitrary code or cause denial of service by sending crafted messages. The vulnerabi...

CVE-2021-34813

CRITICAL CVSS 9.8 Jun 16, 2021

This vulnerability in Matrix libolm allows a malicious Matrix homeserver to crash a client via a stack-based buffer overflow in the olm_pk_decrypt function during room key backup retrieval. Remote cod...

CVE-2024-45191

MEDIUM CVSS 5.3 Aug 22, 2024

This vulnerability in Matrix libolm's AES implementation allows attackers to perform cache-timing attacks to potentially extract cryptographic keys. It affects software using vulnerable versions of li...

CVE-2024-45193

MEDIUM CVSS 4.3 Aug 22, 2024

This vulnerability in Matrix libolm allows attackers to create different but valid signatures for the same message due to insufficient Ed25519 signature validation. This affects applications using lib...