Nixpkgs Security Tracker

Login with GitHub

Suggestions search

With package: libuvc

Found 1 matching suggestions

Published
updated 1 week, 6 days ago by @LeSuisse Activity log
  • Created automatic suggestion
  • @LeSuisse accepted
  • @LeSuisse published on GitHub
libuvc UVC Descriptor device.c uvc_scan_streaming null pointer dereference

A vulnerability was detected in libuvc up to 0.0.7. Affected is the function uvc_scan_streaming of the file src/device.c of the component UVC Descriptor Handler. The manipulation results in null pointer dereference. The attack needs to be approached locally. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

Affected products

libuvc
  • ==0.0.4
  • ==0.0.2
  • ==0.0.5
  • ==0.0.6
  • ==0.0.7
  • ==0.0.3
  • ==0.0.1

Matching in nixpkgs

Package maintainers

Upstream issue: https://github.com/libuvc/libuvc/issues/300