Stack Write Overflow in WhatsApp for Android and iPhone
CVE-2020-1894
8.8HIGH
What is CVE-2020-1894?
A stack write overflow vulnerability has been identified in WhatsApp affecting multiple versions across both Android and iPhone platforms. This flaw occurs when users interact with a specially crafted push to talk message, potentially allowing attackers to execute arbitrary code. Users are strongly advised to update their applications to the latest versions to mitigate any associated risks. For further information, please refer to the official WhatsApp security advisory.
Affected Version(s)
WhatsApp Android 2.20.35
WhatsApp Android < 2.20.35
WhatsApp Business for Android 2.20.20
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved