PT-2019-6318 · Virgl+3 · Virglrenderer+3
Matthewshao
·
Published
2019-10-08
·
Updated
2024-06-15
·
CVE-2019-18388
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Virglrenderer versions through 0.8.0
Description
The issue is related to a NULL pointer dereference in the
vrend renderer.c component of the virtual OpenGL renderer. This can be exploited by guest OS users to cause a denial of service via malformed commands. The vulnerability is associated with pointer dereference errors, which can allow an attacker to disrupt service.Recommendations
For versions through 0.8.0, update to a version later than 0.8.0 to resolve the issue.
At the moment, there is no information about other specific fixes for this vulnerability.
Fix
DoS
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Astra Linux
Suse
Virglrenderer