Skip to content

Security Vulnerability in the Updater #415

Closed
@Belphemur

Description

@Belphemur

The way the check for signature and certificate in the updater is naive.

I've been pointed out it could (with difficulty) be used against the user.

Found by @JarLob

Metadata

Metadata

Assignees

No one assigned

    Labels

    BugIssues which are bug reportsConfirmedConfirmed issues

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions