CVE-2021-24027: High severity WhatsApp Whatsapp Android vulnerability
A cache configuration issue prior to WhatsApp for Android v2.21.4.18 and WhatsApp Business for Android v2.21.4.18 may have allowed a third party with access to the device’s external storage to read cached TLS material.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-24027?
CVE-2021-24027 is a cache configuration issue in WhatsApp for Android and WhatsApp Business for Android versions prior to 2.21.4.18.
How can a third party exploit CVE-2021-24027?
A third party with access to the device's external storage could exploit CVE-2021-24027 to read cached TLS material.
What is the severity of CVE-2021-24027?
CVE-2021-24027 has a severity rating of high (7.5).
Which software versions are affected by CVE-2021-24027?
WhatsApp for Android versions prior to 2.21.4.18 and WhatsApp Business for Android versions prior to 2.21.4.18 are affected by CVE-2021-24027.
How can I find more information about CVE-2021-24027?
You can find more information about CVE-2021-24027 on WhatsApp's security advisories page: https://www.whatsapp.com/security/advisories/2021/