{"id":1521,"date":"2019-10-18T15:13:04","date_gmt":"2019-10-18T20:13:04","guid":{"rendered":"https:\/\/cert.pa\/?p=1521"},"modified":"2019-10-18T15:13:04","modified_gmt":"2019-10-18T20:13:04","slug":"vulnerabilidad-rce-en-whatsapp-que-podria-comprometer-muchos-moviles-android","status":"publish","type":"post","link":"https:\/\/cert.pa\/?p=1521","title":{"rendered":"Vulnerabilidad RCE en WhatsApp que podr\u00eda comprometer muchos m\u00f3viles Android."},"content":{"rendered":"\n<p>Los GIF (Graphics Interchange Format), ese formato de imagen que com\u00fanmente se utiliza en las redes sociales como animaciones cortas que expresan chistes gr\u00e1ficos en movimiento o expresiones c\u00f3micas en bucle, podr\u00edan contener algo m\u00e1s que hacer re\u00edr a las personas por todo el mundo.<\/p>\n\n\n\n<p>Existe una vulnerabilidad de Ejecuci\u00f3n Remota de C\u00f3digo (RCE por sus siglas en ingl\u00e9s) que podr\u00eda comprometer no solo la aplicaci\u00f3n de WhatsApp, pero tambi\u00e9n el dispositivo Android en su totalidad, puesto que toma ventaja de todos los permisos que tiene WhatsApp sobre el equipo Android.<\/p>\n\n\n\n<p>Fue reportada a Facebook por el investigador &#8220;Awakened&#8221; (Pham Hong Nhat) y le corresponde el c\u00f3digo CVE-2019-11932 que afecta a los Android 8.1 y 9.0. Se trata de un error de corrupci\u00f3n de memoria libre que se encuentra en la librer\u00eda de c\u00f3digo abierto para an\u00e1lisis de im\u00e1genes GIF que utiliza WhatsApp.<\/p>\n\n\n\n<p>La vulnerabilidad puede ser explotada con \u00e9xito hasta la versi\u00f3n de WhatsApp 2.19.230, para corregirla se debe actualizar a la versi\u00f3n 2.19.244 o mayor del programa de mensajer\u00eda instant\u00e1nea.<\/p>\n\n\n\n<p><strong>Fuente: <\/strong><br> \u2022    <a href=\"https:\/\/thehackernews.com\/2019\/10\/whatsapp-rce-vulnerability.html\">https:\/\/thehackernews.com\/2019\/10\/whatsapp-rce-vulnerability.html<\/a><br> \u2022    <a href=\"https:\/\/blog.segu-info.com.ar\/2019\/10\/un-gif-para-controlarlos-todos-nueva.html\">https:\/\/blog.segu-info.com.ar\/2019\/10\/un-gif-para-controlarlos-todos-nueva.html<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Los GIF (Graphics Interchange Format), ese formato de imagen que com\u00fanmente se utiliza en las redes sociales como animaciones cortas que expresan chistes gr\u00e1ficos en movimiento o expresiones c\u00f3micas en bucle, podr\u00edan contener algo m\u00e1s&#8230;<\/p>\n","protected":false},"author":4,"featured_media":1522,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"_uf_show_specific_survey":0,"_uf_disable_surveys":false,"footnotes":""},"categories":[3],"tags":[],"class_list":["post-1521","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-tecnologia-y-seguridad"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/posts\/1521","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1521"}],"version-history":[{"count":1,"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/posts\/1521\/revisions"}],"predecessor-version":[{"id":1523,"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/posts\/1521\/revisions\/1523"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=\/wp\/v2\/media\/1522"}],"wp:attachment":[{"href":"https:\/\/cert.pa\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1521"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1521"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cert.pa\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1521"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}