CVE-2023-3433
MEDIUMJami - Local Denial of Service via Nickname Field Special Character Injection
Title source: llmDescription
The "nickname" field within Savoir-faire Linux's Jami application is susceptible to a failed state when a user inserts special characters into the field. When present, these special characters, make it so the application cannot create the signature for the user and results in a local denial of service to the application.
References (3)
Core 3
Core References
Third Party Advisory
https://blog.blacklanternsecurity.com/p/Jami-Local-Denial-Of-Service-and-QRC-Handler-Vulnerabilities
Scores
CVSS v3
5.5
EPSS
0.0020
EPSS Percentile
10.2%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-20
Status
published
Products (1)
savoirfairelinux/jami
20222284
Published
Jul 14, 2023
Tracked Since
Feb 18, 2026