A lack of filename validation when unzipping archives prior to WhatsApp for Android v2.21.8.13 and WhatsApp Business for Android v2.21.8.13 could have allowed path traversal attacks that overwrite WhatsApp files.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.whatsapp.com/security/advisories/2021/ |
History
No history.
MITRE
Status: PUBLISHED
Assigner: facebook
Published: 2021-06-11T03:35:10
Updated: 2024-08-03T19:21:17.185Z
Reserved: 2021-01-13T00:00:00
Link: CVE-2021-24035
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2021-06-11T04:15:08.887
Modified: 2021-06-21T19:34:38.337
Link: CVE-2021-24035
Redhat
No data.