6.8
CVSSv2

CVE-2020-1894

Published: 03/09/2020 Updated: 11/09/2020
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

A stack write overflow in WhatsApp for Android prior to v2.20.35, WhatsApp Business for Android prior to v2.20.20, WhatsApp for iPhone prior to v2.20.30, and WhatsApp Business for iPhone prior to v2.20.30 could have allowed arbitrary code execution when playing a specially crafted push to talk message.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

whatsapp whatsapp

whatsapp whatsapp business

Recent Articles

Darknet market's peacemaker sentenced to 11 years in prison
The Register • Shaun Nichols in San Francisco • 07 Sep 2020

Sealed with an XSS: Flaw in Go lang library could cause app issues Snowden was right: US court deems NSA bulk phone-call snooping illegal, possibly unconstitutional, and probably pointless anyway

In Brief A Colorado man will spend more than a decade behind bars for trying to settle a few arguments, albeit on an online souk selling highly illegal stuff. Bryan Connor Herrell, aka "penissmith" and/or "botah" has been sentenced to 11 years for his work as a sort of problem solver on the Alphabay crime market. The moderator was tasked with settling disputes between sellers and their customers, usually involving drugs. In addition to handling disputes, he was also asked to watch for scammers w...