Security Advisory

CVE-2019-11927

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-09-27 20:14:48
Last updated 2024-08-04 23:10:29
Assigner facebook
State PUBLISHED

Description

An integer overflow in WhatsApp media parsing libraries allows a remote attacker to perform an out-of-bounds write on the heap via specially-crafted EXIF tags in WEBP images. This issue affects WhatsApp for Android before version 2.19.143 and WhatsApp for iOS before version 2.19.100.