CVE-2021-36769

low
Published — · Modified —
CVSS v3
CVSS v2
VIR risk
2.5

Description

A reordering issue exists in Telegram before 7.8.1 for Android, Telegram before 7.8.3 for iOS, and Telegram Desktop before 2.8.8. An attacker can cause the server to receive messages in a different order than they were sent a client.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2021-36769

vendor Authored 2026-05-27

Vendor advisory: arch — https://security.archlinux.org/ASA-202107-45

OS impact

OSVersionStatusFixed in
arch archfixed2.8.11-1
debian debianbookwormfixed2.9.2+ds-1
debian debianbullseyefixed2.9.2+ds-1
debian debianforkyfixed2.9.2+ds-1
debian debiansidfixed2.9.2+ds-1

References

Verify integrity in audit chain (admin only). AS-IS.