CVE-2022-34346

CWE-125Out-of-bounds Read5 documents5 sources
Severity
7.8HIGH
EPSS
0.1%
top 83.00%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 16

Description

Out-of-bounds read in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:LExploitability: 1.3 | Impact: 3.4

Affected Packages3 packages

CVEListV5intel(r)_media_sdk_softwarebefore version 22.2.2
Debianintel-mediasdk< 22.3.0-1

Patches

🔴Vulnerability Details

3
GHSA
GHSA-85v6-97w4-xjxp: Out-of-bounds read in the Intel(R) Media SDK software before version 222023-02-16
CVEList
CVE-2022-34346: Out-of-bounds read in the Intel(R) Media SDK software before version 222023-02-16
OSV
CVE-2022-34346: Out-of-bounds read in the Intel(R) Media SDK software before version 222023-02-16

📋Vendor Advisories

1
Debian
CVE-2022-34346: intel-mediasdk - Out-of-bounds read in the Intel(R) Media SDK software before version 22.2.2 may ...2022
CVE-2022-34346 (HIGH CVSS 7.8) | Out-of-bounds read in the Intel(R) | cvebase.io