ZeroHour

CVE-2022-3349

PoC
CVSS 3.1
6.8 medium
EPSS
<1%p43
Published
()
Modified
Description

A vulnerability was found in Sony PS4 and PS5. It has been classified as critical. This affects the function UVFAT_readupcasetable of the component exFAT Handler. The manipulation of the argument dataLength leads to heap-based buffer overflow. It is possible to launch the attack on the physical device. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-209679.

Vendors
sony
Products
playstation 4 firmware, playstation 5 firmware
Weakness
CWE-119, CWE-787
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.