A critical vulnerability in the Librem One service, discovered on the day of its launch
In the Librem One service, designed for use on the Librem 5 smartphone, a critical security issue emerged shortly after launch, undermining the project portrayed as a secure platform for privacy. The vulnerability was found in the Librem Chat service and allowed access to the chat as any user, without knowing the authentication parameters. In the backend code used for LDAP authorization (matrix-appservice-ldap3) […]
