Medium severity6.0NVD Advisory· Published Aug 4, 2022· Updated Jun 17, 2026
CVE-2022-2652
CVE-2022-2652
Description
Depending on the way the format strings in the card label are crafted it's possible to leak kernel stack memory. There is also the possibility for DoS due to the v4l2loopback kernel module crashing when providing the card label on request (reproduce e.g. with many %s modifiers in a row).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:o:v4l2loopback_project:v4l2loopback:*:*:*:*:*:*:*:*Range: <0.12.6
- osv-coords2 versionspkg:rpm/opensuse/v4l2loopback&distro=openSUSE%20Leap%2015.3pkg:rpm/opensuse/v4l2loopback&distro=openSUSE%20Leap%2015.4
< 0.12.5-lp153.2.5.1+ 1 more
- (no CPE)range: < 0.12.5-lp153.2.5.1
- (no CPE)range: < 0.12.5-lp154.3.3.1
- umlaeute/umlaeute/v4l2loopbackv5Range: unspecified
Patches
Vulnerability mechanics
References
2- github.com/umlaeute/v4l2loopback/commit/e4cd225557486c420f6a34411f98c575effd43ddnvdPatchThird Party Advisory
- huntr.dev/bounties/1b055da5-7a9e-4409-99d7-030280d242d5nvdExploitIssue TrackingPatchThird Party Advisory
News mentions
0No linked articles in our index yet.