CVE-2022-27170
published 2023-02-16CVE-2022-27170: Protection mechanism failure in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable escalation of…
PriorityP335high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.25%
15.8th percentile
Protection mechanism failure in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | intel-mediasdk | < intel-mediasdk 22.3.0-1 (bookworm) | intel-mediasdk 22.3.0-1 (bookworm) |
| intel | media_software_development_kit | < 22.2.2 | 22.2.2 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian5.7MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-4882-wqhm-2474: Protection mechanism failure in the Intel(R) Media SDK software before version 22
ghsa_unreviewed·2023-02-16
CVE-2022-27170 [HIGH] GHSA-4882-wqhm-2474: Protection mechanism failure in the Intel(R) Media SDK software before version 22
Protection mechanism failure in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
OSV
CVE-2022-27170: Protection mechanism failure in the Intel(R) Media SDK software before version 22
osv·2023-02-16·CVSS 7.8
CVE-2022-27170 [HIGH] CVE-2022-27170: Protection mechanism failure in the Intel(R) Media SDK software before version 22
Protection mechanism failure in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
Debian
CVE-2022-27170: intel-mediasdk - Protection mechanism failure in the Intel(R) Media SDK software before version 2...
vendor_debian·2022·CVSS 5.7
CVE-2022-27170 [MEDIUM] CVE-2022-27170: intel-mediasdk - Protection mechanism failure in the Intel(R) Media SDK software before version 2...
Protection mechanism failure in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 22.3.0-1)
bullseye: open
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-02-16
Published