CVE-2020-1903

An issue when unzipping docx, pptx, and xlsx documents in WhatsApp for iOS prior to v2.20.61 and WhatsApp Business for iOS prior to v2.20.61 could have resulted in an out-of-memory denial of service. This issue would have required the receiver to explicitly open the attachment if it was received from a number not in the receiver's WhatsApp contacts.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:whatsapp:whatsapp:*:*:*:*:*:iphone_os:*:*
cpe:2.3:a:whatsapp:whatsapp_business:*:*:*:*:*:iphone_os:*:*

History

21 Nov 2024, 05:11

Type Values Removed Values Added
References () https://www.whatsapp.com/security/advisories/2020/ - Vendor Advisory () https://www.whatsapp.com/security/advisories/2020/ - Vendor Advisory

Information

Published : 2020-10-06 18:15

Updated : 2024-11-21 05:11


NVD link : CVE-2020-1903

Mitre link : CVE-2020-1903

CVE.ORG link : CVE-2020-1903


JSON object : View

Products Affected

whatsapp

  • whatsapp_business
  • whatsapp
CWE
CWE-400

Uncontrolled Resource Consumption