CVE-2019-11933: Buffer Overflow
Published Oct 23, 2019
·Updated
A heap buffer overflow bug in libpldroidsonroidsgif before 1.2.19, as used in WhatsApp for Android before version 2.19.291 could allow remote attackers to execute arbitrary code or cause a denial of service.
Affected Software
2 affected components
Libpl Droidsonroids Gif Project Libpl Droidsonroids Gif<1.2.19
WhatsApp Whatsapp Android<2.19.291
Event History
Oct 23, 2019
CVE Published
via MITRE·03:40 PM
Data Sourced
via MITRE·03:40 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-11933?
The severity of CVE-2019-11933 is critical with a score of 9.8.
2
How does CVE-2019-11933 affect libpl_droidsonroids_gif?
CVE-2019-11933 affects libpl_droidsonroids_gif versions before 1.2.19.
3
How does CVE-2019-11933 affect WhatsApp for Android?
CVE-2019-11933 affects WhatsApp for Android versions before 2.19.291.
4
What can remote attackers do with CVE-2019-11933?
Remote attackers could execute arbitrary code or cause a denial of service with CVE-2019-11933.
5
Is there a fix available for CVE-2019-11933?
Yes, updating libpl_droidsonroids_gif to version 1.2.19 and WhatsApp for Android to version 2.19.291 will fix CVE-2019-11933.