← back
CVE-2022-1920

CVE-2022-1920

EPSS 0.5%CWE-122
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 0.5%KEV nãoPoC Nuclei Metasploit Patch referenciado
Lifecycle
19 Jul 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Integer overflow in matroskademux element in gst_matroska_demux_add_wvpk_header function which allows a heap overwrite while parsing matroska files. Potential for arbitrary code execution through heap overwrite.
Affected products
n/a · GStreamer