CVE-2020-1889: Critical severity whatsapp vulnerability
Published Sep 3, 2020
·Updated
A security feature bypass issue in WhatsApp Desktop versions prior to v0.3.4932 could have allowed for sandbox escape in Electron and escalation of privilege if combined with a remote code execution vulnerability inside the sandboxed renderer process.
Affected Software
1 affected component
WhatsApp WhatsApp Desktop<0.3.4932
Event History
Sep 3, 2020
CVE Published
via MITRE·09:10 PM
Data Sourced
via MITRE·09:10 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this security issue?
The vulnerability ID for this security issue is CVE-2020-1889.
2
What is the severity of CVE-2020-1889?
CVE-2020-1889 has a severity level of critical.
3
What is affected by CVE-2020-1889?
WhatsApp Desktop versions prior to v0.3.4932 are affected by CVE-2020-1889.
4
What is the potential impact of CVE-2020-1889?
CVE-2020-1889 could lead to a sandbox escape in Electron and escalation of privilege if combined with a remote code execution vulnerability in the sandboxed renderer process.
5
How can I fix CVE-2020-1889?
To fix CVE-2020-1889, update WhatsApp Desktop to version v0.3.4932 or later.