Denial of Service in WeChat Application by Altering Emoji Files
CVE-2019-11419
5.5MEDIUM
What is CVE-2019-11419?
The WeChat application for Android is susceptible to a denial of service issue, enabling attackers to crash the app by manipulating emoji files. By replacing a standard emoji file in the specified directory with a specially crafted .wxgf file, an attacker can trigger a crash upon receiving a message that references the modified emoji. This attack is contingent on the replacement content being derived from the device's IMEI, underscoring the risk associated with file manipulation on the platform.
