CVE-2020-1895: Integer Overflow
A large heap overflow could occur in Instagram for Android when attempting to upload an image with specially crafted dimensions. This affects versions prior to 128.0.0.26.128.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Instagram (Android)to a version that resolves this vulnerability.Fixed in 128.0.0.26.128
Event History
Frequently Asked Questions
What is CVE-2020-1895?
CVE-2020-1895 is a vulnerability in Instagram for Android that allows a large heap overflow when uploading an image with specially crafted dimensions.
What is the severity of CVE-2020-1895?
The severity of CVE-2020-1895 is high, with a CVSS score of 7.8.
How does CVE-2020-1895 affect Instagram for Android?
CVE-2020-1895 affects versions of Instagram for Android prior to 128.0.0.26.128.
What is the fix for CVE-2020-1895?
To fix CVE-2020-1895, users should update Instagram for Android to version 128.0.0.26.128 or later.
Where can I find more information about CVE-2020-1895?
More information about CVE-2020-1895 can be found on the Facebook Security Advisories website.