CVE-2022-27492: Integer Underflow
Published Sep 23, 2022
·Updated
An integer underflow in WhatsApp could have caused remote code execution when receiving a crafted video file.
Affected Software
2 affected components
WhatsApp Whatsapp Iphone Os<2.22.15.9
WhatsApp Whatsapp Android<2.22.16.2
Event History
Sep 23, 2022
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this WhatsApp vulnerability?
The vulnerability ID for this WhatsApp vulnerability is CVE-2022-27492.
2
What is the severity of CVE-2022-27492?
The severity of CVE-2022-27492 is high with a severity value of 7.8.
3
How does CVE-2022-27492 work?
CVE-2022-27492 is caused by an integer underflow in WhatsApp when receiving a crafted video file, which could lead to remote code execution.
4
Which software versions of WhatsApp are affected by CVE-2022-27492?
WhatsApp versions up to and excluding 2.22.15.9 for iPhone and up to and excluding 2.22.16.2 for Android are affected by CVE-2022-27492.
5
How can I protect myself from CVE-2022-27492?
To protect yourself from CVE-2022-27492, make sure to update your WhatsApp app to a version higher than 2.22.15.9 for iPhone or higher than 2.22.16.2 for Android.