PT-2019-6318 · Virgl+3 · Virglrenderer+3

Matthewshao

·

Published

2019-10-08

·

Updated

2024-06-15

·

CVE-2019-18388

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Virglrenderer versions through 0.8.0
Description The issue is related to a NULL pointer dereference in the vrend renderer.c component of the virtual OpenGL renderer. This can be exploited by guest OS users to cause a denial of service via malformed commands. The vulnerability is associated with pointer dereference errors, which can allow an attacker to disrupt service.
Recommendations For versions through 0.8.0, update to a version later than 0.8.0 to resolve the issue. At the moment, there is no information about other specific fixes for this vulnerability.

Fix

DoS

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2019-2895
ALT-PU-2019-2905
BDU:2023-00916
CVE-2019-18388
DLA-3232-1
OESA-2021-1427
OPENSUSE-SU-2020:0058-1
OPENSUSE-SU-2020_0058-1
OPENSUSE-SU-2024:11499-1
SUSE-SU-2020:0016-1
SUSE-SU-2020:0017-1
SUSE-SU-2020_0016-1
SUSE-SU-2020_0017-1

Affected Products

Alt Linux
Astra Linux
Suse
Virglrenderer