A buffer overflow vulnerability in WhatsApp VOIP stack allowed remote code execution via specially crafted series of RTCP packets sent to a target phone number. The issue affects WhatsApp for Android prior to v2.19.134, WhatsApp Business for Android prior to v2.19.44, WhatsApp for iOS prior to v2.19.51, WhatsApp Business for iOS prior to v2.19.51, WhatsApp for Windows Phone prior to v2.18.348, and WhatsApp for Tizen prior to v2.18.15.
Metrics
Affected Vendors & Products
References
History
Wed, 22 Oct 2025 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 21 Oct 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 21 Oct 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 03 Sep 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Whatsapp whatsapp Business
|
|
| CPEs | cpe:2.3:a:whatsapp:whatsapp:*:*:*:*:business:iphone_os:*:* |
cpe:2.3:a:whatsapp:whatsapp_business:*:*:*:*:*:android:*:* cpe:2.3:a:whatsapp:whatsapp_business:*:*:*:*:*:iphone_os:*:* |
| Vendors & Products |
Whatsapp whatsapp Business
|
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 07 Feb 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
kev
|
Thu, 06 Feb 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-119 | CWE-787 |
Status: PUBLISHED
Assigner: facebook
Published: 2019-05-14T19:52:40.000Z
Updated: 2025-10-21T23:45:37.464Z
Reserved: 2019-01-02T00:00:00.000Z
Link: CVE-2019-3568
Updated: 2024-08-04T19:12:09.468Z
Status : Analyzed
Published: 2019-05-14T20:29:03.187
Modified: 2025-10-24T14:14:39.417
Link: CVE-2019-3568
No data.