Aller au contenu
appaloosa scout logo main rounded
CRITICAL 9.8

CVE-2018-6350

An out-of-bounds read was possible in WhatsApp due to incorrect parsing of RTP extension headers. This issue affects WhatsApp for Android prior to 2.18.276, WhatsApp Business for Android prior to 2.18.99, WhatsApp for iOS prior to 2.18.100.6, WhatsApp Business for iOS prior to 2.18.100.2, and WhatsApp for Windows Phone prior to 2.18.224.

CVSS v3 CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Apps mobiles affectées

Configurations CPE vulnérables

Vendor Produit Plateforme Versions CPE 2.3 URI
whatsapp whatsapp Android <2.18.99 cpe:2.3:a:whatsapp:whatsapp:*:*:*:*:*:android:*:*
whatsapp whatsapp iOS <2.18.100.6 cpe:2.3:a:whatsapp:whatsapp:*:*:*:*:*:iphone_os:*:*
whatsapp whatsapp_business iOS <2.18.100.2 cpe:2.3:a:whatsapp:whatsapp_business:*:*:*:*:*:iphone_os:*:*
whatsapp whatsapp_business Android <2.18.276 cpe:2.3:a:whatsapp:whatsapp_business:*:*:*:*:*:android:*:*
Voir sur NVD ↗