← back
CVE-2019-11419

CVE-2019-11419

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 4.0%
exploitation probability
4.0%top 10% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
vcodec2_hls_filter in libvoipCodec_v7a.so in the WeChat application through 7.0.3 for Android allows attackers to cause a denial of service (application crash) by replacing an emoji file (under the /sdcard/tencent/MicroMsg directory) with a crafted .wxgf file. The content of the replacement must be derived from the phone's IMEI. The crash occurs upon receiving a message that contains the replaced emoji.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.