CVE-2020-1891

A user controlled parameter used in video call in WhatsApp for Android prior to v2.20.17, WhatsApp Business for Android prior to v2.20.7, WhatsApp for iPhone prior to v2.20.20, and WhatsApp Business for iPhone prior to v2.20.20 could have allowed an out-of-bounds write on 32-bit devices.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:whatsapp:whatsapp:*:*:*:*:*:android:*:*
cpe:2.3:a:whatsapp:whatsapp:*:*:*:*:*:iphone_os:*:*
cpe:2.3:a:whatsapp:whatsapp_business:*:*:*:*:*:android:*:*
cpe:2.3:a:whatsapp:whatsapp_business:*:*:*:*:*:iphone_os:*:*

History

21 Nov 2024, 05:11

Type Values Removed Values Added
References () https://www.whatsapp.com/security/advisories/2020 - Vendor Advisory () https://www.whatsapp.com/security/advisories/2020 - Vendor Advisory

Information

Published : 2020-09-03 21:15

Updated : 2024-11-21 05:11


NVD link : CVE-2020-1891

Mitre link : CVE-2020-1891

CVE.ORG link : CVE-2020-1891


JSON object : View

Products Affected

whatsapp

  • whatsapp
  • whatsapp_business
CWE
CWE-787

Out-of-bounds Write