CVE-2021-24042
Published: Jan 4, 2022
Modified: May 22, 2025
Description
The calling logic for WhatsApp for Android prior to v2.21.23, WhatsApp Business for Android prior to v2.21.23, WhatsApp for iOS prior to v2.21.230, WhatsApp Business for iOS prior to v2.21.230, WhatsApp for KaiOS prior to v2.2143, WhatsApp Desktop prior to v2.2146 could have allowed an out-of-bounds write if a user makes a 1:1 call to a malicious actor.
| Vendor | Product | Versions |
|---|---|---|
WhatsApp Desktop | affected unspecified - < v2.2146unaffected v2.2146 - < unspecified | |
WhatsApp for KaiOS | affected unspecified - < v2.2143unaffected v2.2143 - < unspecified | |
WhatsApp Business for iOS | affected unspecified - < v2.21.230unaffected v2.21.230 - < unspecified | |
WhatsApp for iOS | affected unspecified - < v2.21.230unaffected v2.21.230 - < unspecified | |
WhatsApp Business for Android | affected unspecified - < v2.21.23unaffected v2.21.23 - < unspecified | |
WhatsApp for Android | affected unspecified - < v2.21.23unaffected v2.21.23 - < unspecified |
Weaknesses (CWE)
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now