Heap-Based Buffer Overflow in MediaArea MediaInfoLib
CVE-2026-22554

7.8HIGH

Key Information:

Vendor

Mediaarea

Vendor
CVE Published:
20 May 2026

What is CVE-2026-22554?

A heap-based buffer overflow vulnerability has been identified in MediaArea's MediaInfoLib, potentially allowing an attacker to exploit the application's memory management processes. By manipulating the input handled by this library, which processes multimedia data, an attacker may cause unexpected behavior such as crashes or the execution of arbitrary code. This issue underscores the importance of rigorous input validation and secure coding practices in software development.

Affected Version(s)

MediaInfoLib 26.01

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Discovered by Dimitrios Tatsis of Cisco TALOS
.