September 29, 2022
2 mins read

Indian cyber agency warns WhatsApp users of critical bugs

Successful exploitation of this vulnerability could allow a remote attacker to execute arbitrary code on the targeted system, said CERT-In…reports Asian Lite News

The Indian cyber agency CERT-In on Wednesday warned WhatsApp users of multiple bugs which could be exploited by a remote attacker to execute arbitrary code on the targeted system.

In an advisory, CERT-In, under the IT Ministry, described two remote code execution vulnerabilities in Meta-owned WhatsApp in both Android and iOS versions.

The first vulnerability exists in WhatsApp due to integer overflow.

“A remote attacker could exploit this vulnerability to execute remote code in an established video call,” warned the cyber agency.

Successful exploitation of this vulnerability could allow a remote attacker to execute arbitrary code on the targeted system, said CERT-In.

Hackers can also exploit a second vulnerability in WhatsApp by sending a specially-crafted video file that can put users’ information at risk.

CERT-In advised WhatsApp users to install latest security updates.

WhatsApp has nearly 500 million users in the country, according the third-party reports.

Critical bug in older versions, now patched

Meta-owned WhatsApp has revealed a critical bug that could affect older installations on various devices that have not been updated with latest software versions.

The vulnerability could allow an attacker to exploit a code error known as an integer overflow.

“An integer overflow in WhatsApp for Android prior to v2.22.16.12, Business for Android prior to v2.22.16.12, iOS prior to v2.22.16.12, Business for iOS prior to v2.22.16.12 could result in remote code execution in an established video call,” WhatsApp said in an update.

In remote code execution, a hacker can remotely execute commands on someone else’s computing device.

Remote code executions (RCEs) usually occur due to malicious malware downloaded by the host and can happen regardless of the device’s geographic location.

The recently disclosed vulnerability has been called CVE-2022-36934, with a severity score of 9.8 out of 10 on the CVE scale.

WhatsApp also revealed details of another bug that could have caused remote code execution when receiving a crafted video file.

Both of these vulnerabilities have been patched in the latest versions of WhatsApp.

WhatsApp on Monday announced it was rolling out Call Links to make it easier to start and join a call in just one tap.

The company also started testing secured and encrypted group video calls for up to 32 people on WhatsApp.

ALSO READ: ‘India as a country is culturally very rich’

Previous Story

R. Venkataramani appointed new Attorney General of India

Next Story

Navaratri celebrations begin with fervour in Britain

Latest from India News

IMF hails India’s economic reforms

The IMF on Tuesday raised India’s growth projection to 6.6 per cent, an upward swing of 0.2 percentage points…reports Asian Lite News IMF Managing Director Kristalina Georgieva on Thursday praised India for

Trump plans new squeeze on Russia

US President Donald Trump plans to tighten pressure on Moscow by halting global energy imports from Russia….reports Asian Lite News Since imposing a large sum of “reciprocal” trade tariff, Trump has been

India to send holy relics to Mongolia by 2026

According to the Maha Bodhi Society of India, Arahant Sariputta and Arahant Moggallana were the two principal disciples of Lord Buddha. Revered for their wisdom and spiritual accomplishments, they hold a prominent

India, Uganda vow deeper ties

Minister of State Kirti Vardhan Singh met Ugandan President Yoweri Museveni on Thursday to discuss strengthening India–Uganda ties….reports Asian Lite News Union Minister of State for External Affairs Kirti Vardhan Singh met

India-Mongolia trade nearly doubles

Bilateral trade between India and Mongolia nearly doubles as the two nations mark 70 years of diplomatic ties and deepen their strategic and cultural partnership…reports Asian Lite News Bilateral trade between India
Go toTop

Don't Miss

India Stays Neutral on Dalai Lama Succession

As exiled Tibetan spiritual leader approaches his 90th birthday, he

Panel blames ‘human error’ behind CDC Rawat’s death 

The Standing Committee report of the 18th Lok Sabha stated