Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-2652

Опубликовано: 04 авг. 2022
Источник: nvd
CVSS3: 7.3
CVSS3: 6
EPSS Низкий

Описание

Depending on the way the format strings in the card label are crafted it's possible to leak kernel stack memory. There is also the possibility for DoS due to the v4l2loopback kernel module crashing when providing the card label on request (reproduce e.g. with many %s modifiers in a row).

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:v4l2loopback_project:v4l2loopback:*:*:*:*:*:*:*:*
Версия до 0.12.6 (исключая)

EPSS

Процентиль: 17%
0.00053
Низкий

7.3 High

CVSS3

6 Medium

CVSS3

Дефекты

CWE-134

Связанные уязвимости

CVSS3: 6
ubuntu
больше 3 лет назад

Depending on the way the format strings in the card label are crafted it's possible to leak kernel stack memory. There is also the possibility for DoS due to the v4l2loopback kernel module crashing when providing the card label on request (reproduce e.g. with many %s modifiers in a row).

CVSS3: 6
debian
больше 3 лет назад

Depending on the way the format strings in the card label are crafted ...

suse-cvrf
больше 3 лет назад

Security update for v4l2loopback

suse-cvrf
больше 3 лет назад

Security update for v4l2loopback

CVSS3: 6
github
больше 3 лет назад

Depending on the way the format strings in the card label are crafted it's possible to leak kernel stack memory. There is also the possibility for DoS due to the v4l2loopback kernel module crashing when providing the card label on request (reproduce e.g. with many %s modifiers in a row).

EPSS

Процентиль: 17%
0.00053
Низкий

7.3 High

CVSS3

6 Medium

CVSS3

Дефекты

CWE-134