India’s Cyber Agency Issues “High” Security Warning For WhatsApp Threats

WhatsApp Advisory India: A “high” severity rating advisory issued by India’s cyber security agency CERT-In said the vulnerability has been detected in software that has “WhatsApp and WhatsApp Business for Android prior to v2.21.4.18 and WhatsApp and WhatsApp Business for iOS prior to v2.21.32.”

India's Cyber Agency Issues 'High' Security Warning For WhatsApp Threats

WhatsApp Advisory: Cyber agency CERT-In warned WhatsApp users about possible data breach



New Delhi:

India’s cyber security agency has cautioned WhatsApp users about certain vulnerabilities detected in the popular instant messaging app that could lead to breach of sensitive information.

A “high” severity rating advisory issued by the CERT-In or the Indian Computer Emergency Response Team said the vulnerability has been detected in software that has “WhatsApp and WhatsApp Business for Android prior to v2.21.4.18 and WhatsApp and WhatsApp Business for iOS prior to v2.21.32.”

The CERT-In is the national technology arm to combat cyber attacks and guarding the Indian cyber space.

“Multiple vulnerabilities have been reported in WhatsApp applications which could allow a remote attacker to execute arbitrary code or access sensitive information on a targeted system,” the advisory said.

Describing the risk in detail, it said that these vulnerabilities “exist in WhatsApp applications due to a cache configuration issue and missing bounds check within the audio decoding pipeline.”

“Successful exploitation of these vulnerabilities could allow the attacker to execute arbitrary code or access sensitive information on a targeted system,” it said.

The advisory added that users of the app (application) should update the latest version of WhatsApp from Google Play store or iOS App Store to counter the vulnerability threat.
 

(Except for the headline, this story has not been edited by our staff and is published from a syndicated feed.)

Leave a Comment

All the data shown above will be stored by www.rajpostexam.com on https://www.rajpostexam.com/. At any point of time, you can contact us and select the data you wish to anonymise or delete so it cannot be linked to your email address any longer. When your data is anonymised or deleted, you will receive an email confirmation. We also use cookies and/or similar technologies to analyse customer behaviour, administer the website, track users' movements, and to collect information about users. This is done in order to personalise and enhance your experience with us. Click here to read our Cookie Policy.