CVE-2022-29119

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Jun 15, 2022
Updated: Jan 2, 2025

Summary

CVE-2022-29119 is a remote code execution vulnerability affecting HEVC Video Extensions. Maliciously crafted HEVC video files can exploit this flaw, leading to arbitrary code execution on vulnerable systems. Successful exploitation may result in unauthorized system access, data theft, or further attacks. The vulnerability can be mitigated by applying recommended patches from the software vendor or implementing network security measures to block malicious video files.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft HEVC Video Extensions

Affected Vendors

  • Microsoft