CVE Vulnerabilities

CVE-2022-4907

Published: Jul 29, 2023 | Modified: Dec 28, 2023
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Uninitialized Use in FFmpeg in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)

Affected Software

Name Vendor Start Version End Version
Chrome Google * 108.0.5359.71 (excluding)
Chromium-browser Ubuntu bionic *
Chromium-browser Ubuntu trusty *
Chromium-browser Ubuntu upstream *
Chromium-browser Ubuntu xenial *
Ffmpeg Ubuntu bionic *
Ffmpeg Ubuntu devel *
Ffmpeg Ubuntu esm-apps/noble *
Ffmpeg Ubuntu lunar *
Ffmpeg Ubuntu mantic *
Ffmpeg Ubuntu noble *
Ffmpeg Ubuntu oracular *
Ffmpeg Ubuntu trusty *
Ffmpeg Ubuntu xenial *

References