vendor:
WeChat for Android
by:
Hong Nhat Pham
5.5
CVSS
MEDIUM
Denial of Service
400
CWE
Product Name: WeChat for Android
Affected Version From: 7.0.4
Affected Version To: 7.0.4
Patch Exists: YES
Related CWE: CVE-2019-11419
CPE: a:tencent:wechat
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Android 9.0
2019
DoS Wechat with an emoji
vcodec2_hls_filter in libvoipCodec_v7a.so in WeChat application for Android results in a DoS by replacing an emoji file (under the /sdcard/tencent/MicroMsg directory) with a crafted .wxgf file.
Mitigation:
Ensure that the application is updated to the latest version and that all security patches are applied.