Lucene search

K
cveMitreCVE-2022-40016
HistoryFeb 15, 2023 - 10:15 p.m.

CVE-2022-40016

2023-02-1522:15:11
CWE-416
mitre
web.nvd.nist.gov
22
cve-2022-40016
use after free
uaf vulnerability
ireader media-server
librtmp
denial of service
nvd

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

32.2%

Use After Free (UAF) vulnerability in ireader media-server before commit 3e0f63f1d3553f75c7d4eb32fa7c7a1976a9ff84 in librtmp, allows attackers to cause a denial of service.

Affected configurations

Nvd
Node
media-server_projectmedia-serverRange<2022-08-06
VendorProductVersionCPE
media-server_projectmedia-server*cpe:2.3:a:media-server_project:media-server:*:*:*:*:*:*:*:*

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

32.2%

Related for CVE-2022-40016