2025年9月1日星期一

WhatsApp Security Restriction Bypass Vulnerability

WhatsApp Security Restriction Bypass Vulnerability

Release Date: 1 Sep 2025

RISK: Medium Risk

TYPE: Clients - Im, Chat & Voip

A vulnerability has been identified in in WhatsApp. A remote attacker could exploit this vulnerability to trigger security restriction bypass on the targeted system.

 

Note:

CVE-2025-55177 is being scattered exploited. This vulnerability allow an unrelated user to trigger processing of content from an arbitrary URL on a target’s device. Hence, the risk level is rated as Medium Risk.

 

CVE-2025-55177, in combination with an OS-level vulnerability on Apple platforms (CVE-2025-43300), may have been exploited in a sophisticated attack against specific targeted users. 


Impact

  • Security Restriction Bypass

System / Technologies affected

  • WhatsApp for iOS prior to v2.25.21.73
  • WhatsApp Business for iOS v2.25.21.7
  • WhatsApp for Mac v2.25.21.78

Solutions

Before installation of the software, please visit the software vendor web-site for more details.

Apply fixes issued by the vendor:


Vulnerability Identifier


Source


Related Link

沒有留言:

發佈留言

思科產品多個漏洞

思科產品多個漏洞 於思科產品發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況,資料篡改及繞過保安限制。 影響 阻斷服務 繞過保安限制 篡改 受影響之系統或技術 Cisco IOS Cisco IOS XE 請參考供應商發佈的連結以了解受影響的版本: https:...