CVE-2024-54916: Medium severity telegram vulnerability
Published Feb 11, 2025
·Updated
An issue in the SharedConfig class of Telegram Android APK v.11.7.0 allows a physically proximate attacker to bypass authentication and escalate privileges by manipulating the return value of the checkPasscode method.
Affected Software
1 affected component
Telegram Telegram Android APK
Event History
Feb 11, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-54916?
The severity level of CVE-2024-54916 is classified as high due to the potential for privilege escalation.
2
How do I fix CVE-2024-54916?
To mitigate CVE-2024-54916, update the Telegram Android APK to the latest version where the issue is resolved.
3
Who is affected by CVE-2024-54916?
CVE-2024-54916 affects users of the Telegram Android APK version 11.7.0.
4
What type of attacker can exploit CVE-2024-54916?
A physically proximate attacker can exploit CVE-2024-54916 by manipulating the return value of the checkPasscode method.
5
What is the impact of CVE-2024-54916?
The impact of CVE-2024-54916 allows an attacker to bypass authentication and escalate privileges within the Telegram app.