CVE-2017-5994
15.03.2017, 14:59
Heap-based buffer overflow in the vrend_create_vertex_elements_state function in vrend_renderer.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (out-of-bounds array access and crash) via the num_elements parameter.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| virglrenderer_project | virglrenderer | 𝑥 ≤ 0.5.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libvirglrenderer0 |
| ||||||||||||||||||||||||
| libvirglrenderer1 |
| ||||||||||||||||||||||||
| virglrenderer-devel |
|
Common Weakness Enumeration
References