CVE-2022-36934: Integer Overflow
Published Sep 22, 2022
·Updated
An integer overflow in WhatsApp could result in remote code execution in an established video call.
Affected Software
6 affected components
WhatsApp Whatsapp Android<2.22.16.12
WhatsApp Whatsapp Iphone Os<2.22.16.12
WhatsApp Whatsapp Android<2.22.16.12
WhatsApp Whatsapp Iphone Os<2.22.16.12
WhatsApp Whatsapp Business Android<2.22.16.12
WhatsApp Whatsapp Business Iphone Os<2.22.16.12
Event History
Sep 22, 2022
CVE Published
via MITRE·09:30 PM
Data Sourced
via MITRE·09:30 PM
DescriptionWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-36934?
CVE-2022-36934 is a vulnerability in WhatsApp that could result in remote code execution during a video call.
2
How severe is CVE-2022-36934?
CVE-2022-36934 has a severity rating of 9.8, which is considered critical.
3
Which software versions are affected by CVE-2022-36934?
WhatsApp versions up to and exclusive of 2.22.16.12 for Android, iOS, and WhatsApp Business on Android and iOS are affected by CVE-2022-36934.
4
How can the CVE-2022-36934 vulnerability be exploited?
The CVE-2022-36934 vulnerability can be exploited by an attacker during an established video call on WhatsApp.
5
Where can I find more information about CVE-2022-36934?
You can find more information about CVE-2022-36934 in the WhatsApp Security Advisories at https://www.whatsapp.com/security/advisories/2022/