Security Advisory

CVE-2018-17780

6.5
MEDIUM

Vulnerability Description

Telegram Desktop (aka tdesktop) 1.3.14, and Telegram 3.3.0.0 WP8.1 on Windows, leaks end-user public and private IP addresses during a call because of an unsafe default behavior in which P2P connections are accepted from clients outside of the My Contacts list.
Published Date September 29, 2018
Official Source NIST NVD Advisory