Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
virglrenderer project virglrenderer vulnerabilities and exploits
(subscribe to this query)
2.1
CVSSv2
CVE-2017-5937
The util_format_is_pure_uint function in vrend_renderer.c in Virgil 3d project (aka virglrenderer) 0.6.0 and previous versions allows local guest OS users to cause a denial of service (NULL pointer dereference) via a crafted VIRGL_CCMD_CLEAR command.
Virglrenderer Project Virglrenderer
2.1
CVSSv2
CVE-2017-5956
The vrend_draw_vbo function in virglrenderer prior to 0.6.0 allows local guest OS users to cause a denial of service (out-of-bounds array access and QEMU process crash) via vectors involving vertext_buffer_index.
Virglrenderer Project Virglrenderer
2.1
CVSSv2
CVE-2020-8003
A double-free vulnerability in vrend_renderer.c in virglrenderer up to and including 0.8.1 allows malicious users to cause a denial of service by triggering texture allocation failure, because vrend_renderer_resource_allocated_texture is not an appropriate place for a free.
Virglrenderer Project Virglrenderer
Debian Debian Linux 10.0
2.1
CVSSv2
CVE-2020-8002
A NULL pointer dereference in vrend_renderer.c in virglrenderer up to and including 0.8.1 allows malicious users to cause a denial of service via commands that attempt to launch a grid without previously providing a Compute Shader (CS).
Virglrenderer Project Virglrenderer
Debian Debian Linux 10.0
2.1
CVSSv2
CVE-2019-18388
A NULL pointer dereference in vrend_renderer.c in virglrenderer up to and including 0.8.0 allows guest OS users to cause a denial of service via malformed commands.
Virglrenderer Project Virglrenderer
Opensuse Leap 15.1
Debian Debian Linux 10.0
NA
CVE-2022-0135
An out-of-bounds write issue was found in the VirGL virtual OpenGL renderer (virglrenderer). This flaw allows a malicious guest to create a specially crafted virgil resource and then issue a VIRTGPU_EXECBUFFER ioctl, leading to a denial of service or possible code execution.
Virglrenderer Project Virglrenderer
Redhat Enterprise Linux 8.0
Debian Debian Linux 10.0
3.6
CVSSv2
CVE-2019-18390
An out-of-bounds read in the vrend_blit_need_swizzle function in vrend_renderer.c in virglrenderer up to and including 0.8.0 allows guest OS users to cause a denial of service via VIRGL_CCMD_BLIT commands.
Virglrenderer Project Virglrenderer
Redhat Enterprise Linux 8.0
Opensuse Leap 15.1
Debian Debian Linux 10.0
2.1
CVSSv2
CVE-2019-18391
A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer up to and including 0.8.0 allows guest OS users to cause a denial of service via VIRGL_CCMD_RESOURCE_INLINE_WRITE commands.
Virglrenderer Project Virglrenderer
Redhat Enterprise Linux 8.0
Opensuse Leap 15.1
Debian Debian Linux 10.0
4.6
CVSSv2
CVE-2019-18389
A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer up to and including 0.8.0 allows guest OS users to cause a denial of service, or QEMU guest-to-host escape and code execution, via VIRGL_CCMD_RESOURCE_INLINE_WRITE ...
Virglrenderer Project Virglrenderer
Redhat Enterprise Linux 8.0
Opensuse Leap 15.1
Debian Debian Linux 10.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-3380
CVE-2024-1694
local file inclusion
CVE-2024-5645
CVE-2024-24919
XSS
CVE-2024-36774
CVE-2024-21306
SQL
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2