Logo
vulnerabilityCVE-2022-47021
Name
CVE-2022-47021
Source
NVD ( link)Debian ( link)
Description
A null pointer dereference issue was discovered in functions op_get_data and op_open1 in opusfile.c in xiph opusfile 0.9 thru 0.12 allows attackers to cause denial of service or other unspecified impacts.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
opusfile
Patched

Vulnerability Ratings#


7.8
CVSSv31
7.8
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
master
0.12
Patched
openwrt
master
0.12-r2
Exploitable
openwrt
openwrt-25.12
0.12-r2
Exploitable
yocto
kirkstone
0.12
Patched
yocto
master
0.12
Patched
yocto
scarthgap
0.12
Patched

Resolved with patches#


opusfile (buildroot:2025.02.x)

#
Title
Author
Resolve
1
Propagate allocation failure from ogg_sync_buffer.
Ralph Giles <giles@thaumas.net>
CVE-2022-47021

opusfile (buildroot:master)

#
Title
Author
Resolve
1
Propagate allocation failure from ogg_sync_buffer.
Ralph Giles <giles@thaumas.net>
CVE-2022-47021

opusfile (yocto:kirkstone)

#
Title
Author
Resolve
1
Propagate allocation failure from ogg_sync_buffer.
Ralph Giles <giles@thaumas.net>
CVE-2022-47021

opusfile (yocto:master)

#
Title
Author
Resolve
1
Propagate allocation failure from ogg_sync_buffer.
Ralph Giles <giles@thaumas.net>
CVE-2022-47021

opusfile (yocto:scarthgap)

#
Title
Author
Resolve
1
Propagate allocation failure from ogg_sync_buffer.
Ralph Giles <giles@thaumas.net>
CVE-2022-47021