CVE-2019-11931
Published: Nov 14, 2019
Modified: Aug 4, 2024
Description
A stack-based buffer overflow could be triggered in WhatsApp by sending a specially crafted MP4 file to a WhatsApp user. The issue was present in parsing the elementary stream metadata of an MP4 file and could result in a DoS or RCE. This affects Android versions prior to 2.19.274, iOS versions prior to 2.19.100, Enterprise Client versions prior to 2.25.3, Business for Android versions prior to 2.19.104 and Business for iOS versions prior to 2.19.100.
| Vendor | Product | Versions |
|---|---|---|
WhatsApp for Android | affected 2.19.274affected unspecified - < 2.19.274 | |
WhatsApp for iOS | affected 2.19.100affected unspecified - < 2.19.100 | |
WhatsApp for Windows Phone | affected unspecified - <= 2.18.368 | |
WhatsApp Enterprise Client | affected 2.25.3affected unspecified - < 2.25.3 | |
WhatsApp Business for Android | affected 2.19.104affected unspecified - < 2.19.104 | |
WhatsApp Business for iOS | affected 2.19.100affected unspecified - < 2.19.100 |
Weaknesses (CWE)
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now