First published: Thu Apr 09 2020(Updated: )
A large heap overflow could occur in Instagram for Android when attempting to upload an image with specially crafted dimensions. This affects versions prior to 128.0.0.26.128.
Credit: cve-assign@fb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Facebook Instagram | <128.0.0.26.128 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-1895 is a vulnerability in Instagram for Android that allows a large heap overflow when uploading an image with specially crafted dimensions.
The severity of CVE-2020-1895 is high, with a CVSS score of 7.8.
CVE-2020-1895 affects versions of Instagram for Android prior to 128.0.0.26.128.
To fix CVE-2020-1895, users should update Instagram for Android to version 128.0.0.26.128 or later.
More information about CVE-2020-1895 can be found on the Facebook Security Advisories website.