CVE-2018-4022

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
26/10/2018
Last modified:
07/06/2022

Description

A use-after-free vulnerability exists in the way MKVToolNix MKVINFO v25.0.0 handles the MKV (matroska) file format. A specially crafted MKV file can cause arbitrary code execution in the context of the current user.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mkvtoolnix:mkvinfo:25.0.0:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools