First published: Wed Oct 04 2023(Updated: )
A race condition in a network transport subsystem led to a heap use-after-free issue in established or unsilenced incoming audio/video calls that could have resulted in app termination or unexpected control flow with very low probability.
Credit: cve-assign@fb.com cve-assign@fb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Whatsapp Whatsapp | <2.2338.12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2023-38537.
The severity of CVE-2023-38537 is medium with a CVSS score of 5.6.
CVE-2023-38537 is a race condition in a network transport subsystem that led to a heap use-after-free issue in established or unsilenced incoming audio/video calls, potentially resulting in app termination or unexpected control flow.
The affected software is Whatsapp version up to and excluding 2.2338.12 for desktop on Mac OS X.
To fix CVE-2023-38537, it is recommended to update Whatsapp to the latest version available.