First published: Fri Sep 23 2022(Updated: )
An integer underflow in WhatsApp could have caused remote code execution when receiving a crafted video file.
Credit: cve-assign@fb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Whatsapp Whatsapp | <2.22.15.9 | |
Whatsapp Whatsapp | <2.22.16.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this WhatsApp vulnerability is CVE-2022-27492.
The severity of CVE-2022-27492 is high with a severity value of 7.8.
CVE-2022-27492 is caused by an integer underflow in WhatsApp when receiving a crafted video file, which could lead to remote code execution.
WhatsApp versions up to and excluding 2.22.15.9 for iPhone and up to and excluding 2.22.16.2 for Android are affected by CVE-2022-27492.
To protect yourself from CVE-2022-27492, make sure to update your WhatsApp app to a version higher than 2.22.15.9 for iPhone or higher than 2.22.16.2 for Android.