AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-6350

CRITICAL · CVSS 9.8 EPSS 1.69%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-06-14 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It affects Windows, Android.

CVE
CVE-2018-6350
Severity
CRITICAL
CVSS
9.8
EPSS
1.69%
Windows Android

Original NVD Description

An out-of-bounds read was possible in WhatsApp due to incorrect parsing of RTP extension headers. This issue affects WhatsApp for Android prior to 2.18.276, WhatsApp Business for Android prior to 2.18.99, WhatsApp for iOS prior to 2.18.100.6, WhatsApp Business for iOS prior to 2.18.100.2, and WhatsApp for Windows Phone prior to 2.18.224.

Related CVEs

Other vulnerabilities affecting the same vendor(s)