Information exposure through timing discrepancy in Zulip Server - CVE-2022-41914
Published: November 17, 2022
Zulip Server
Zulip
Description
The vulnerability allows a remote attacker to gain access to sensitive information.
The vulnerability exists due to a weak generation mechanism of SCIM bearer tokens. A remote attacker can infer the value of the SCIM bearer token by performing a sophisticated timing analysis on a large number of failing requests. If successful, this would allow the attacker to impersonate the SCIM client for its abilities to read and update user accounts in the Zulip organization.