{"api_version":"1","generated_at":"2026-07-24T21:28:53+00:00","cve":"CVE-2022-22820","urls":{"html":"https://cve.report/CVE-2022-22820","api":"https://cve.report/api/cve/CVE-2022-22820.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2022-22820","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2022-22820"},"summary":{"title":"CVE-2022-22820","description":"Due to the lack of media file checks before rendering, it was possible for an attacker to cause abnormal CPU consumption for message recipient by sending specially crafted gif image in LINE for Windows before 7.4.","state":"PUBLIC","assigner":"dl_cve@linecorp.com","published_at":"2022-01-20 12:15:00","updated_at":"2023-08-08 14:22:00"},"problem_types":["CWE-20"],"metrics":[],"references":[{"url":"https://hackerone.com/reports/1357400","name":"https://hackerone.com/reports/1357400","refsource":"MISC","tags":[],"title":"HackerOne","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2022-22820","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2022-22820","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2022","cve_id":"22820","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"linecorp","cpe5":"line","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"windows","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"data_type":"CVE","data_format":"MITRE","data_version":"4.0","CVE_data_meta":{"ID":"CVE-2022-22820","ASSIGNER":"dl_cve@linecorp.com","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"vendor_name":"LINE Corporation","product":{"product_data":[{"product_name":"LINE for Windows","version":{"version_data":[{"version_value":"<","version_affected":"7.4"}]}}]}}]}},"references":{"reference_data":[{"url":"https://hackerone.com/reports/1357400","refsource":"MISC","name":"https://hackerone.com/reports/1357400"}]},"description":{"description_data":[{"lang":"eng","value":"Due to the lack of media file checks before rendering, it was possible for an attacker to cause abnormal CPU consumption for message recipient by sending specially crafted gif image in LINE for Windows before 7.4."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]}},"nvd":{"publishedDate":"2022-01-20 12:15:00","lastModifiedDate":"2023-08-08 14:22:00","problem_types":["CWE-20"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"},"exploitabilityScore":1.8,"impactScore":3.6},"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:N/A:P","accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL","baseScore":4.3},"severity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:linecorp:line:*:*:*:*:*:windows:*:*","versionEndExcluding":"7.4.0","cpe_name":[]}]}]}},"legacy_mitre":{"record":{"CveYear":"2022","CveId":"22820","Ordinal":"225277","Title":"CVE-2022-22820","CVE":"CVE-2022-22820","Year":"2022"},"notes":[{"CveYear":"2022","CveId":"22820","Ordinal":"1","NoteData":"Due to the lack of media file checks before rendering, it was possible for an attacker to cause abnormal CPU consumption for message recipient by sending specially crafted gif image in LINE for Windows before 7.4.","Type":"Description","Title":null},{"CveYear":"2022","CveId":"22820","Ordinal":"2","NoteData":"2022-01-20","Type":"Other","Title":"Published"},{"CveYear":"2022","CveId":"22820","Ordinal":"3","NoteData":"2022-01-20","Type":"Other","Title":"Modified"}]}}}