Critical WhatsApp Bugs Could Have Let Attackers Hack Devices Remotel

Teilen:

WhatsApp has released security updates to address two flaws in its messaging app for Android and iOS that could lead to remote code execution on vulnerable devices.

One of them concerns CVE-2022-36934 (CVSS score: 9.8), a critical integer overflow vulnerability in WhatsApp that results in the execution of arbitrary code simply by establishing a video call.

The issue impacts the WhatsApp and WhatsApp Business for Android and iOS prior to versions 2.22.16.12.

 

Also patched by the Meta-owned messaging platform is an integer underflow bug, which refers to an opposite category of errors that occur when the result of an operation is too small for storing the value within the allocated memory space.

The high-severity issue, given the CVE identifier CVE-2022-27492 (CVSS score: 7.8), affects WhatsApp for Android prior to versions 2.22.16.2 and WhatsApp for iOS version 2.22.15.9, and could be triggered upon receiving a specially crafted video file.

Exploiting integer overflows und underflows are a stepping stone towards inducing undesirable behavior, causing unexpected crashes, memory corruption, and code execution.

 

WhatsApp did not share more specifics on the vulnerabilities, but cybersecurity firm Malwarebytes sagte that they reside in two components called Video Call Handler and Video File Handler, which could permit an attacker to seize Steuerung des Einkaufsmodus of the app.

A spokesperson for WhatsApp told The Hacker News that “we discovered [the flaws] ourselves and there was no evidence of exploitation.”

Vulnerabilities on WhatsApp can be a lucrative attack vector for threat actors looking to plant malicious software on compromised devices. In 2019, an audio calling flaw was exploited by the Israeli spyware maker NSO Group to inject the Pegasus spyware.

https://thehackernews.com/2022/09/critical-whatsapp-bugs-could-have-let.html

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
10:23 am, Juli 12, 2025
Wetter-Symbol 26°C
L: 24° | H: 27°
klarer Himmel
Luftfeuchtigkeit: 54 %
Druck: 1017 mb
Wind: 6 mph NE
Windböe: 8 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 2%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 4:57 am
Sonnenuntergang: 9:14 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 10:00 pm
Wetter-Symbol
24° | 27°°C 0 mm 0% 10 mph 49 % 1017 mb 0 mm/h
Tomorrow 10:00 pm
Wetter-Symbol
17° | 28°°C 0 mm 0% 6 mph 64 % 1015 mb 0 mm/h
Mo. Juli 14 10:00 pm
Wetter-Symbol
19° | 26°°C 0 mm 0% 17 mph 67 % 1015 mb 0 mm/h
Di. Juli 15 10:00 pm
Wetter-Symbol
14° | 22°°C 0 mm 0% 15 mph 69 % 1016 mb 0 mm/h
Mi. Juli 16 10:00 pm
Wetter-Symbol
16° | 28°°C 0 mm 0% 12 mph 74 % 1017 mb 0 mm/h
Today 1:00 pm
Wetter-Symbol
26° | 28°°C 0 mm 0% 7 mph 49 % 1017 mb 0 mm/h
Today 4:00 pm
Wetter-Symbol
29° | 30°°C 0 mm 0% 10 mph 37 % 1015 mb 0 mm/h
Today 7:00 pm
Wetter-Symbol
26° | 26°°C 0 mm 0% 10 mph 37 % 1014 mb 0 mm/h
Today 10:00 pm
Wetter-Symbol
21° | 21°°C 0 mm 0% 6 mph 47 % 1015 mb 0 mm/h
Tomorrow 1:00 am
Wetter-Symbol
18° | 18°°C 0 mm 0% 4 mph 60 % 1015 mb 0 mm/h
Tomorrow 4:00 am
Wetter-Symbol
17° | 17°°C 0 mm 0% 5 mph 64 % 1014 mb 0 mm/h
Tomorrow 7:00 am
Wetter-Symbol
18° | 18°°C 0 mm 0% 5 mph 59 % 1013 mb 0 mm/h
Tomorrow 10:00 am
Wetter-Symbol
23° | 23°°C 0 mm 0% 5 mph 47 % 1013 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€100,929.32
-0.12%
Ethereum(ETH)
€2,538.69
-1.43%
XRP(XRP)
€2.40
7.95%
Fesseln(USDT)
€0.86
0.00%
Solana(SOL)
€139.05
-0.94%
USDC(USDC)
€0.86
-0.01%
Dogecoin(DOGE)
€0.171655
1.67%
Shiba Inu(SHIB)
€0.000011
-0.14%
Pepe(PEPE)
€0.000010
-2.31%
Peanut das Eichhörnchen(PNUT)
€0.246209
7.19%
Nach oben scrollen