CVE-2022-35883

Severity
5.5MEDIUM
EPSS
0.1%
top 83.19%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 16

Description

NULL pointer dereference in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable denial of service via local access.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:LExploitability: 0.8 | Impact: 1.4

Affected Packages3 packages

CVEListV5intel(r)_media_sdk_softwarebefore version 22.2.2
Debianintel-mediasdk< 22.3.0-1

Patches

🔴Vulnerability Details

3
GHSA
GHSA-fq74-8wx7-rfjm: NULL pointer dereference in the Intel(R) Media SDK software before version 222023-02-16
OSV
CVE-2022-35883: NULL pointer dereference in the Intel(R) Media SDK software before version 222023-02-16
CVEList
CVE-2022-35883: NULL pointer dereference in the Intel(R) Media SDK software before version 222023-02-16

📋Vendor Advisories

1
Debian
CVE-2022-35883: intel-mediasdk - NULL pointer dereference in the Intel(R) Media SDK software before version 22.2....2022
CVE-2022-35883 (MEDIUM CVSS 5.5) | NULL pointer dereference in the Int | cvebase.io