PT-2022-25084 · Unknown · Libsavsaudio.So+1

Mart1N

+1

·

Published

2022-11-09

·

Updated

2022-11-14

·

CVE-2022-39891

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Editor Lite versions prior to 4.0.41.3
Description A heap overflow vulnerability exists in the parse pce function in libsavsaudio.so of Editor Lite. This issue allows an attacker to obtain information.
Recommendations For versions prior to 4.0.41.3, update to version 4.0.41.3 or later to resolve the issue. As a temporary workaround, consider restricting access to the libsavsaudio.so library until a patch is applied.

Fix

Out of bounds Read

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2022-39891

Affected Products

Editor Lite
Libsavsaudio.So