PT-2019-14598 · Telegram · Telegram

Dhiraj Mishra

·

Published

2019-09-11

·

Updated

2021-10-18

·

CVE-2019-16248

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Telegram versions prior to 5.11
Description The issue concerns the "delete for" feature, which does not properly delete shared media files from the Telegram Images directory on Android devices. This can lead to a misleading user interface indication that a sender has removed a recipient's copy of a previously sent image, when in fact the image remains accessible.
Recommendations For versions prior to 5.11, update to version 5.11 or later to ensure that the "delete for" feature functions as intended and properly removes shared media files from the Telegram Images directory.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2019-16248

Affected Products

Telegram