Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-48363

Опубликовано: 26 фев. 2023
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

In MPD before 0.23.8, as used on Automotive Grade Linux and other platforms, the PipeWire output plugin mishandles a Drain call in certain situations involving truncated files. Eventually there is an assertion failure in libmpdclient because libqtappfw passes in a NULL pointer.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:linuxfoundation:automotive_grade_linux:*:*:*:*:*:*:*:*
Версия до 0.23.8 (исключая)

EPSS

Процентиль: 27%
0.00098
Низкий

7.5 High

CVSS3

Дефекты

CWE-617
CWE-617

Связанные уязвимости

CVSS3: 7.5
github
почти 3 года назад

In MPD before 0.23.8, as used on Automotive Grade Linux and other platforms, the PipeWire output plugin mishandles a Drain call in certain situations involving truncated files. Eventually there is an assertion failure in libmpdclient because libqtappfw passes in a NULL pointer.

EPSS

Процентиль: 27%
0.00098
Низкий

7.5 High

CVSS3

Дефекты

CWE-617
CWE-617