CVE-2022-29119
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Jun 15, 2022
Updated: Jan 2, 2025
Summary
CVE-2022-29119 is a remote code execution vulnerability affecting HEVC Video Extensions. Maliciously crafted HEVC video files can exploit this flaw, leading to arbitrary code execution on vulnerable systems. Successful exploitation may result in unauthorized system access, data theft, or further attacks. The vulnerability can be mitigated by applying recommended patches from the software vendor or implementing network security measures to block malicious video files.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft HEVC Video Extensions
Affected Vendors
- Microsoft