CVE-2021-24042 - CVE House
Back to Database
Status published Unknown CVE-2021-24042

The calling logic for WhatsApp for Android prior to v2.21.23,...

Vulnerability Description

The calling logic for WhatsApp for Android prior to v2.21.23, WhatsApp Business for Android prior to v2.21.23, WhatsApp for iOS prior to v2.21.230, WhatsApp Business for iOS prior to v2.21.230, WhatsApp for KaiOS prior to v2.2143, WhatsApp Desktop prior to v2.2146 could have allowed an out-of-bounds write if a user makes a 1:1 call to a malicious actor.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-24042

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

WhatsApp Desktop, WhatsApp for KaiOS, WhatsApp Business for iOS, WhatsApp for iOS, WhatsApp Business for Android, WhatsApp for Android
Vulnerable Versions:
unspecified, v2.2146, v2.2143, v2.21.230, v2.21.23

Timeline

Official Publish: January 4th, 2022
Last Modified: May 22nd, 2025
Added to House: July 21st, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)