CVE-2021-47793: Telegram Desktop 2.9.2 - Denial of Service (PoC)
Published Jan 15, 2026
·Updated
Telegram Desktop 2.9.2 contains a denial of service vulnerability that allows attackers to crash the application by sending an oversized message payload. Attackers can generate a 9 million byte buffer and paste it into the messaging interface to trigger an application crash.
Affected Software
2 affected components
Telegram Telegram Desktop
Telegram Telegram Desktop=2.9.2
Event History
Jan 15, 2026
CVE Published
via MITRE·11:25 PM
Data Sourced
via MITRE·11:25 PM
DescriptionSeverityWeakness
Jan 16, 2026
Data Sourced
via NVD·12:16 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-47793?
CVE-2021-47793 has a severity rating that indicates it can cause a denial of service in Telegram Desktop 2.9.2.
2
How do I fix CVE-2021-47793?
To fix CVE-2021-47793, ensure you update to the latest version of Telegram Desktop, which addresses this vulnerability.
3
What does CVE-2021-47793 affect?
CVE-2021-47793 specifically affects Telegram Desktop version 2.9.2.
4
What type of vulnerability is CVE-2021-47793?
CVE-2021-47793 is classified as a denial of service vulnerability.
5
Can CVE-2021-47793 be exploited remotely?
Yes, CVE-2021-47793 can be exploited remotely by sending an oversized message payload to Telegram Desktop.