PT-2017-16786 · Virgl+1 · Virglrenderer+1

Li Qiang

·

Published

2017-03-14

·

Updated

2024-06-15

·

CVE-2017-5957

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions virglrenderer versions before 926b9b3460a48f6454d8bbe9e44313d86a65447f
Description The issue is a stack-based buffer overflow in the vrend decode set framebuffer state function, located in vrend decode.c, which can cause a denial of service (application crash). This is achieved by exploiting the nr cbufs argument. The vulnerability is exploited by local guest users.
Recommendations For virglrenderer versions before 926b9b3460a48f6454d8bbe9e44313d86a65447f, update to a version after 926b9b3460a48f6454d8bbe9e44313d86a65447f to resolve the issue. As a temporary workaround, consider restricting access to the vrend decode set framebuffer state function to minimize the risk of exploitation. Avoid using the nr cbufs argument in the affected function until the issue is resolved.

Fix

DoS

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-5957
OPENSUSE-SU-2024:11499-1
SUSE-SU-2017:0798-1

Affected Products

Suse
Virglrenderer