CVE-2019-3571: Input Validation
Published Jul 16, 2019
·Updated
An input validation issue affected WhatsApp Desktop versions prior to 0.3.3793 which allows malicious clients to send files to users that would be displayed with a wrong extension.
Affected Software
2 affected components
WhatsApp Whatsapp Mac Os X<0.3.3793
WhatsApp Whatsapp Windows<0.3.3793
Event History
Jul 16, 2019
CVE Published
via MITRE·08:16 PM
Data Sourced
via MITRE·08:16 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2019-3571?
CVE-2019-3571 is an input validation issue that affected WhatsApp Desktop versions prior to 0.3.3793.
2
What is the severity of CVE-2019-3571?
CVE-2019-3571 has a severity rating of 5.3 (medium).
3
What is the affected software for CVE-2019-3571?
The affected software for CVE-2019-3571 are WhatsApp Desktop versions prior to 0.3.3793 for both Mac OS X and Windows.
4
How can malicious clients exploit CVE-2019-3571?
Malicious clients can exploit CVE-2019-3571 by sending files to users with a wrong extension.
5
Is there a fix for CVE-2019-3571?
Yes, updating WhatsApp Desktop to version 0.3.3793 or later fixes CVE-2019-3571.