Vulnerability Details CVE-2023-38538
A race condition in an event subsystem led to a heap use-after-free issue in established audio/video calls that could have resulted in app termination or unexpected control flow with very low probability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 27.1%
CVSS Severity
CVSS v3 Score 5.0
Products affected by CVE-2023-38538
-
cpe:2.3:a:whatsapp:whatsapp:0.2.1061
-
cpe:2.3:a:whatsapp:whatsapp:0.2.2243
-
cpe:2.3:a:whatsapp:whatsapp:0.2.2478
-
cpe:2.3:a:whatsapp:whatsapp:0.2.2731
-
cpe:2.3:a:whatsapp:whatsapp:0.2.3120
-
cpe:2.3:a:whatsapp:whatsapp:0.2.3572
-
cpe:2.3:a:whatsapp:whatsapp:0.2.3698
-
cpe:2.3:a:whatsapp:whatsapp:0.2.4240
-
cpe:2.3:a:whatsapp:whatsapp:0.2.5371
-
cpe:2.3:a:whatsapp:whatsapp:0.2.684
-
cpe:2.3:a:whatsapp:whatsapp:0.2.777
-
cpe:2.3:a:whatsapp:whatsapp:0.2.8505
-
cpe:2.3:a:whatsapp:whatsapp:0.2.9008
-
cpe:2.3:a:whatsapp:whatsapp:0.2.9229
-
cpe:2.3:a:whatsapp:whatsapp:0.2.9737
-
cpe:2.3:a:whatsapp:whatsapp:0.3.1071.0
-
cpe:2.3:a:whatsapp:whatsapp:0.3.1847
-
cpe:2.3:a:whatsapp:whatsapp:0.3.3793