Vulnerabilities > Whatsapp > High

DATE CVE VULNERABILITY TITLE RISK
2019-10-03 CVE-2019-11932 Double Free vulnerability in multiple products
A double free vulnerability in the DDGifSlurp function in decoding.c in the android-gif-drawable library before version 1.2.18, as used in WhatsApp for Android before version 2.19.244 and many other Android applications, allows remote attackers to execute arbitrary code or cause a denial of service when the library is used to parse a specially crafted GIF image.
8.8
2019-09-27 CVE-2019-11927 Integer Overflow or Wraparound vulnerability in Whatsapp
An integer overflow in WhatsApp media parsing libraries allows a remote attacker to perform an out-of-bounds write on the heap via specially-crafted EXIF tags in WEBP images.
local
low complexity
whatsapp CWE-190
7.8
2018-12-31 CVE-2018-6344 Out-of-bounds Write vulnerability in Whatsapp
A heap corruption in WhatsApp can be caused by a malformed RTP packet being sent after a call is established.
network
low complexity
whatsapp CWE-787
7.5