VYPR
Vendor

WideVine

Products
2
CVEs
6
Across products
6
Status
Private

Products

2

Recent CVEs

6
  • CVE-2022-48336CriJun 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Widevine Trusted Application (TA) 5.0.0 through 7.1.1 has a PRDiagParseAndStoreData integer overflow and resultant buffer overflow.

  • CVE-2022-48334CriJun 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Widevine Trusted Application (TA) 5.0.0 through 5.1.1 has a drm_verify_keys total_len+file_name_len integer overflow and resultant buffer overflow.

  • CVE-2022-48333CriJun 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Widevine Trusted Application (TA) 5.0.0 through 5.1.1 has a drm_verify_keys prefix_len+feature_name_len integer overflow and resultant buffer overflow.

  • CVE-2022-48332CriJun 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Widevine Trusted Application (TA) 5.0.0 through 5.1.1 has a drm_save_keys file_name_len integer overflow and resultant buffer overflow.

  • CVE-2022-48331CriJun 26, 2023
    risk 0.64cvss 9.8epss 0.01

    Widevine Trusted Application (TA) 5.0.0 through 5.1.1 has a drm_save_keys feature_name_len integer overflow and resultant buffer overflow.

  • CVE-2023-20701MedMay 15, 2023
    risk 0.44cvss 6.7epss 0.00

    In widevine, there is a possible out of bounds write due to a logic error. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07643270; Issue ID: ALPS07643270.