CVE-2018-20655: Critical severity whatsapp vulnerability
When receiving calls using WhatsApp for iOS, a missing size check when parsing a sender-provided packet allowed for a stack-based overflow. This issue affects WhatsApp for iOS prior to v2.18.90.24 and WhatsApp Business for iOS prior to v2.18.90.24.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-20655?
CVE-2018-20655 is a vulnerability that allows for a stack-based overflow when receiving calls using WhatsApp for iOS.
How does CVE-2018-20655 affect WhatsApp for iOS?
CVE-2018-20655 affects WhatsApp for iOS prior to v2.18.90.24 and WhatsApp Business for iOS prior to v2.18.90.24.
Where can I find more information about CVE-2018-20655?
More information about CVE-2018-20655 can be found on the Security Focus website and the Facebook Security Advisories page.
What is the severity of CVE-2018-20655?
The severity of CVE-2018-20655 is classified as critical with a severity value of 9.8.
What is the Common Weakness Enumeration (CWE) ID of CVE-2018-20655?
The Common Weakness Enumeration (CWE) ID of CVE-2018-20655 is CWE-787 and CWE-121.