Back to Database
Status published
Critical
CVE-2021-24041
A missing bounds check in image blurring code prior to...
Vulnerability Description
A missing bounds check in image blurring code prior to WhatsApp for Android v2.21.22.7 and WhatsApp Business for Android v2.21.22.7 could have allowed an out-of-bounds write if a user sent a malicious image.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-24041
Credits & Attribution
No credits recorded in the NVD database.
More from Facebook
View All →CVE-2025-64296
WordPress Facebook for WooCommerce plugin <= 3.5.7 - Broken Access Control to Notice Dismissal vulnerability
Medium
5.3
CVE-2025-55181
Sending an HTTP request/response body with greater than 2^31 bytes...
Medium
5.3
CVE-2025-55179
Incomplete validation of rich response messages in WhatsApp for iOS...
Medium
5.4
CVE-2025-55177
Incomplete authorization of linked device synchronization messages in WhatsApp for...
Medium
5.4
CVE-2025-30403
A heap-buffer-overflow vulnerability is possible in mvfst via a specially...
Unknown
0
Affected Vendor
Affected Software
WhatsApp Business for Android, WhatsApp for Android
Vulnerable Versions:
unspecified, v2.21.22.7
Timeline
Official Publish:
December 7th, 2021
Last Modified:
August 3rd, 2024
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H