CERT-In warns against 'multiple vulnerabilities' in WhatsApp that could allow a remote hacker to access data

The Indian cyber security agency CERT-In has cautioned WhatsApp users about certain vulnerabilities detected in the popular instant messaging app that could lead to breach of sensitive information. A "high" severity rating advisory issued by the CERT-In, or the Indian Computer Emergency Response Team, said the vulnerability has been detected in software that has "WhatsApp and WhatsApp Business for Android prior to v2.21.4.18 and WhatsApp and WhatsApp Business for iOS prior to v2.21.32."

The CERT-In is the national technology arm to combat cyber attacks and guarding the Indian cyber space.

"Multiple vulnerabilities have been reported in WhatsApp applications which could allow a remote attacker to execute arbitrary code or access sensitive information on a targeted system," the advisory said.

Image: Pixabay

Describing the risk in detail, it said that these vulnerabilities "exist in WhatsApp applications due to a cache configuration issue and missing bounds check within the audio decoding pipeline."

"Successful exploitation of these vulnerabilities could allow the attacker to execute arbitrary code or access sensitive information on a targeted system," it said.

The advisory added that users of the app should update the latest version of WhatsApp from Google Play store or iOS App Store to counter the vulnerability threat.

In November 2020, CERT-In had issued a similar warning to WhatsApp users, alerting them of two major vulnerabilities, namely improper access control and user-after-free vulnerability.

With inputs from Press Trust of India



from Firstpost Tech Latest News https://ift.tt/3mZ70gB
Share:

No comments:

Post a Comment

Categories

Rove Reviews Youtube Channel

  1. Subscribe to our youtube channel
  2. Like our videos and share them too.
  3. Our youtube channel name Rove reviews.

WITNUX

This website is made by Witnux LLC. This website provides you with all the news feeds related to technology from large tech media industries like GSM Arena, NDTV, Gadgets 360, Firstpost and many other such ates altogether at technical depicts so that you need not go to several sites to view their post provide you advantantage of time.

From the developer
Tanzeel Sarwar

OUR OTHER NETWORKS

OUR YOUTUBE CHANNEL

ROVE REVIEWS PLEASE SUBSCRIBE

OUR FACEBOOK PAGE

The Rove Reviews

Support

Trying our best to provide you the best DONATE or SUPPORTour site Contact me with details how are you gonna help us