CVE-2018-6350: Critical severity whatsapp vulnerability
An out-of-bounds read was possible in WhatsApp due to incorrect parsing of RTP extension headers. This issue affects WhatsApp for Android prior to 2.18.276, WhatsApp Business for Android prior to 2.18.99, WhatsApp for iOS prior to 2.18.100.6, WhatsApp Business for iOS prior to 2.18.100.2, and WhatsApp for Windows Phone prior to 2.18.224.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-6350 vulnerability?
CVE-2018-6350 is an out-of-bounds read vulnerability in WhatsApp due to incorrect parsing of RTP extension headers.
Which versions of WhatsApp are affected by CVE-2018-6350?
WhatsApp for Android prior to 2.18.276, WhatsApp Business for Android prior to 2.18.99, WhatsApp for iOS prior to 2.18.100.6, and WhatsApp Business for iOS prior to 2.18.100.2 are affected.
What is the severity of CVE-2018-6350?
CVE-2018-6350 has a severity level of 9.8 (Critical).
How can I fix CVE-2018-6350 vulnerability in WhatsApp?
Update WhatsApp to version 2.18.276 (Android) or 2.18.100.6 (iOS) to fix CVE-2018-6350 vulnerability.
Where can I find more information about CVE-2018-6350?
You can find more information about CVE-2018-6350 on the following pages: [SecurityFocus](http://www.securityfocus.com/bid/108803) and [Facebook Security Advisories](https://www.facebook.com/security/advisories/cve-2018-6350/).