Matrix Synapse before version 0.31.1 does not properly apply event visibility rules leading to information exposure. External Reference: https://matrix.org/blog/2018/06/08/synapse-0-31-1-released/ Upstream Patch: https://github.com/matrix-org/synapse/pull/3371
Created matrix-synapse tracking bugs for this issue: Affects: fedora-all [bug 1590102]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.