Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
virglrenderer project virglrenderer vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv3
CVE-2016-10163
Memory leak in the vrend_renderer_context_create_internal function in vrend_decode.c in virglrenderer prior to 0.6.0 allows local guest OS users to cause a denial of service (host memory consumption) by repeatedly creating a decode context.
Virglrenderer Project Virglrenderer
6.5
CVSSv3
CVE-2017-6386
Memory leak in the vrend_create_vertex_elements_state function in vrend_renderer.c in virglrenderer allows local guest OS users to cause a denial of service (host memory consumption) via a large number of VIRGL_OBJECT_VERTEX_ELEMENTS commands.
Virglrenderer Project Virglrenderer
5.5
CVSSv3
CVE-2020-8002
A NULL pointer dereference in vrend_renderer.c in virglrenderer up to and including 0.8.1 allows malicious users to cause a denial of service via commands that attempt to launch a grid without previously providing a Compute Shader (CS).
Virglrenderer Project Virglrenderer
Debian Debian Linux 10.0
5.5
CVSSv3
CVE-2020-8003
A double-free vulnerability in vrend_renderer.c in virglrenderer up to and including 0.8.1 allows malicious users to cause a denial of service by triggering texture allocation failure, because vrend_renderer_resource_allocated_texture is not an appropriate place for a free.
Virglrenderer Project Virglrenderer
Debian Debian Linux 10.0
5.5
CVSSv3
CVE-2019-18388
A NULL pointer dereference in vrend_renderer.c in virglrenderer up to and including 0.8.0 allows guest OS users to cause a denial of service via malformed commands.
Virglrenderer Project Virglrenderer
Opensuse Leap 15.1
Debian Debian Linux 10.0
7.8
CVSSv3
CVE-2022-0135
An out-of-bounds write issue was found in the VirGL virtual OpenGL renderer (virglrenderer). This flaw allows a malicious guest to create a specially crafted virgil resource and then issue a VIRTGPU_EXECBUFFER ioctl, leading to a denial of service or possible code execution.
Virglrenderer Project Virglrenderer
Redhat Enterprise Linux 8.0
Debian Debian Linux 10.0
7.8
CVSSv3
CVE-2019-18389
A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer up to and including 0.8.0 allows guest OS users to cause a denial of service, or QEMU guest-to-host escape and code execution, via VIRGL_CCMD_RESOURCE_INLINE_WRITE ...
Virglrenderer Project Virglrenderer
Redhat Enterprise Linux 8.0
Opensuse Leap 15.1
Debian Debian Linux 10.0
7.1
CVSSv3
CVE-2019-18390
An out-of-bounds read in the vrend_blit_need_swizzle function in vrend_renderer.c in virglrenderer up to and including 0.8.0 allows guest OS users to cause a denial of service via VIRGL_CCMD_BLIT commands.
Virglrenderer Project Virglrenderer
Redhat Enterprise Linux 8.0
Opensuse Leap 15.1
Debian Debian Linux 10.0
5.5
CVSSv3
CVE-2019-18391
A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer up to and including 0.8.0 allows guest OS users to cause a denial of service via VIRGL_CCMD_RESOURCE_INLINE_WRITE commands.
Virglrenderer Project Virglrenderer
Redhat Enterprise Linux 8.0
Opensuse Leap 15.1
Debian Debian Linux 10.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30043
camera
CVE-2023-40404
CVE-2024-2793
client side
CVE-2024-4469
CVE-2024-3565
CVE-2024-29825
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2