Out-of-bounds write in WhatsApp Messenger for Android and WhatsApp Business for Android - CVE-2020-1886
Published: September 9, 2020
Vulnerability details
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to a boundary error when processing untrusted input. A remote attacker can trigger out-of-bounds write via a specially crafted video stream after receiving and answering a malicious video call and execute arbitrary code on the target system.
Affected software
WhatsApp Business for Android
How to mitigate CVE-2020-1886
WhatsApp Business for Android - update to 2.20.2