CVE-2022-38019
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Sep 13, 2022
Updated: Jan 2, 2025
Summary
CVE-2022-38019 is a remote code execution vulnerability affecting AV1 Video Extension. An attacker can exploit this issue by crafting a specially designed AV1 video file. Successful exploitation could allow the attacker to execute arbitrary code on the victim's system, potentially leading to a significant security compromise. This vulnerability poses a serious threat to organizations and individuals using the AV1 Video Extension and emphasizes the importance of updating software to the latest version as soon as possible.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Microsoft