A lack of filename validation when unzipping archives prior to WhatsApp for Android v2.21.8.13 and WhatsApp Business for Android v2.21.8.13 could have allowed path traversal attacks that overwrite WhatsApp files.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: facebook

Published: 2021-06-11T03:35:10

Updated: 2024-08-03T19:21:17.185Z

Reserved: 2021-01-13T00:00:00

Link: CVE-2021-24035

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-06-11T04:15:08.887

Modified: 2021-06-21T19:34:38.337

Link: CVE-2021-24035

cve-icon Redhat

No data.