PT-2021-14400 · Wire · Wire

Published

2021-02-11

·

Updated

2021-04-20

·

CVE-2021-21301

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Wire for iOS versions prior to 3.75
Description: The issue is a privacy concern where video capture isn't stopped when a user disables their camera during a video call, causing video to be streamed to the call even when the user believes it is disabled. This affects all users in video calls.
Recommendations: For versions prior to 3.75, update to version 3.75 to resolve the issue. As a temporary workaround, consider disabling video calls until the update is applied.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-21301
GHSA-7FG4-X8VJ-QVXF

Affected Products

Wire