CNNVD-202506-3128 Information

CNNVD ID

CNNVD-202506-3128

CVE-2025-52883

  • CNNVD Published: 2025-06-24

Description (Chinese)

Meshtastic-Android是Meshtastic开源的一个Android应用程序。 Meshtastic-Android 2.5.21之前版本存在安全漏洞,该漏洞源于攻击者可发送未加密直接消息冒充其他节点,可能导致虚假安全感。

Description (English)

Meshtastic-Android is an Android application that is an open-source Meshtastic. There was a security loophole in the previous version of Meshtastic-Android 2.5.21, which stemmed from the fact that the attackers could send unencrypted direct messages as other nodes, which could lead to a false sense of security.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Meshtastic

Published

2025-06-24

Last Modified

2026-02-24

References

https://github.com/meshtastic/Meshtastic-Android/pull/1720 https://github.com/meshtastic/Meshtastic-Android/security/advisories/GHSA-h4rg-g6f3-ghh7 https://access.redhat.com/security/cve/cve-2025-52883

Patch

https://github.com/meshtastic/Meshtastic-Android/releases

Share on: