CVE-2022-22820
CVE-2022-22820
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.8%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
20 Jan 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Due to the lack of media file checks before rendering, it was possible for an attacker to cause abnormal CPU consumption for message recipient by sending specially crafted gif image in LINE for Windows before 7.4.
Affected products
LINE Corporation · LINE for WindowsWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://hackerone.com/reports/1357400