Security Advisory

CVE-2018-4022

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-10-26 17:00:00
Last updated 2024-08-05 05:04:28
Assigner talos
State PUBLISHED

Description

A use-after-free vulnerability exists in the way MKVToolNix MKVINFO v25.0.0 handles the MKV (matroska) file format. A specially crafted MKV file can cause arbitrary code execution in the context of the current user.