CVE-2023-29000
published 2023-04-04CVE-2023-29000: The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Server. Starting with version 3.0.0 and prior to version 3.7.0, by trusting that the…
PriorityP433medium6.5CVSS 3.1
AVNACLPRNUINSUCLILAN
EPSS
0.39%
31.1th percentile
The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Server. Starting with version 3.0.0 and prior to version 3.7.0, by trusting that the server will return a certificate that belongs to the keypair of the user, a malicious server could get the desktop client to encrypt files with a key known to the attacker. This issue is fixed in Nextcloud Desktop 3.7.0. No known workarounds are available.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nextcloud-desktop | < nextcloud-desktop 3.7.0-1 (bookworm) | nextcloud-desktop 3.7.0-1 (bookworm) |
| nextcloud | desktop | >= 3.0.0 < 3.7.0 | 3.7.0 |
| nextcloud | security-advisories | — | — |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
osv6.5MEDIUM
vendor_debian5.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2023-29000: nextcloud-desktop - The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Serve...
vendor_debian·2023·CVSS 5.4
CVE-2023-29000 [MEDIUM] CVE-2023-29000: nextcloud-desktop - The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Serve...
The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Server. Starting with version 3.0.0 and prior to version 3.7.0, by trusting that the server will return a certificate that belongs to the keypair of the user, a malicious server could get the desktop client to encrypt files with a key known to the attacker. This issue is fixed in Nextcloud Desktop 3.7.0. No known workarounds are available.
Scope: local
bookworm: resolved (fixed in 3.7.0-1)
bullseye: open
forky: resolved (fixed in 3.7.0-1)
sid: resolved (fixed in 3.7.0-1)
trixie: resolved (fixed in 3.7.0-1)
OSV
CVE-2023-29000: The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Server
osv·2023-04-04·CVSS 6.5
CVE-2023-29000 [MEDIUM] CVE-2023-29000: The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Server
The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Server. Starting with version 3.0.0 and prior to version 3.7.0, by trusting that the server will return a certificate that belongs to the keypair of the user, a malicious server could get the desktop client to encrypt files with a key known to the attacker. This issue is fixed in Nextcloud Desktop 3.7.0. No known workarounds are available.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://github.com/nextcloud/desktop/pull/4949https://github.com/nextcloud/security-advisories/security/advisories/GHSA-h82x-98q3-7534https://hackerone.com/reports/1679267https://github.com/nextcloud/desktop/pull/4949https://github.com/nextcloud/security-advisories/security/advisories/GHSA-h82x-98q3-7534https://hackerone.com/reports/1679267
2023-04-04
Published