VYPR
Critical severity9.8NVD Advisory· Published Jun 14, 2019· Updated Jun 17, 2026

CVE-2018-6350

CVE-2018-6350

Description

An out-of-bounds read was possible in WhatsApp due to incorrect parsing of RTP extension headers. This issue affects WhatsApp for Android prior to 2.18.276, WhatsApp Business for Android prior to 2.18.99, WhatsApp for iOS prior to 2.18.100.6, WhatsApp Business for iOS prior to 2.18.100.2, and WhatsApp for Windows Phone prior to 2.18.224.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

14
  • Whatsapp/Whatsapp3 versions
    cpe:2.3:a:whatsapp:whatsapp:*:*:*:*:*:android:*:*+ 2 more
    • cpe:2.3:a:whatsapp:whatsapp:*:*:*:*:*:android:*:*range: <2.18.99
    • cpe:2.3:a:whatsapp:whatsapp:*:*:*:*:*:iphone_os:*:*range: <2.18.100.6
    • cpe:2.3:a:whatsapp:whatsapp:*:*:*:*:*:windows_phone:*:*range: <2.18.224
  • cpe:2.3:a:whatsapp:whatsapp_business:*:*:*:*:*:android:*:*+ 2 more
    • cpe:2.3:a:whatsapp:whatsapp_business:*:*:*:*:*:android:*:*range: <2.18.276
    • cpe:2.3:a:whatsapp:whatsapp_business:*:*:*:*:*:iphone_os:*:*range: <2.18.100.2
    • (no CPE)range: <2.18.100.2
  • Range: <2.18.276
  • Range: <2.18.100.6
  • Range: <2.18.276, <2.18.99, <2.18.100.6, <2.18.100.2, <2.18.224
  • Facebook/WhatsApp for Androidcpe-rescue2 versions
    2.18.99+ 1 more
    • (no CPE)range: 2.18.99
    • (no CPE)range: 2.18.276
  • Range: 2.18.100.2
  • Facebook/WhatsApp for iPhonecpe-rescue2 versions
    2.18.100.6+ 1 more
    • (no CPE)range: 2.18.100.6
    • (no CPE)range: 2.18.224

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.