CVE-2022-34841
published 2023-02-16CVE-2022-34841: Improper buffer restrictions in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable escalation of…
PriorityP335high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.25%
15.8th percentile
Improper buffer restrictions in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | intel-mediasdk | < intel-mediasdk 22.3.0-1 (bookworm) | intel-mediasdk 22.3.0-1 (bookworm) |
| intel | media_software_development_kit | < 22.2.2 | 22.2.2 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian5.7MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-q6rf-9rw8-vqf5: Improper buffer restrictions in the Intel(R) Media SDK software before version 22
ghsa_unreviewed·2023-02-16
CVE-2022-34841 [HIGH] CWE-119 GHSA-q6rf-9rw8-vqf5: Improper buffer restrictions in the Intel(R) Media SDK software before version 22
Improper buffer restrictions in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
OSV
CVE-2022-34841: Improper buffer restrictions in the Intel(R) Media SDK software before version 22
osv·2023-02-16·CVSS 7.8
CVE-2022-34841 [HIGH] CVE-2022-34841: Improper buffer restrictions in the Intel(R) Media SDK software before version 22
Improper buffer restrictions in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
Debian
CVE-2022-34841: intel-mediasdk - Improper buffer restrictions in the Intel(R) Media SDK software before version 2...
vendor_debian·2022·CVSS 5.7
CVE-2022-34841 [MEDIUM] CVE-2022-34841: intel-mediasdk - Improper buffer restrictions in the Intel(R) Media SDK software before version 2...
Improper buffer restrictions in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 22.3.0-1)
bullseye: open
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-02-16
Published