PT-2022-1864 · Microsoft · Hevc Video Extensions

Azure Yang

+1

·

Published

2022-03-08

·

Updated

2023-06-29

·

CVE-2022-24453

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions HEVC Video Extensions (affected versions not specified)
Description The issue is related to incorrect code generation management in the HEVC Video Extension codec. Exploitation of this issue may allow a remote attacker to execute arbitrary code using a specially crafted request.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Memory Corruption

Code Injection

Weakness Enumeration

Related Identifiers

BDU:2022-01349
CVE-2022-24453

Affected Products

Hevc Video Extensions