REDHAT-BUG-1765584: Low severity libvirglrenderer vulnerability
An out-of-bounds read in the vrendblitneedswizzle function in vrendrenderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via VIRGLCCMDBLIT commands.
Upstream Issue:
https://gitlab.freedesktop.org/virgl/virglrenderer/mergerequests/314/diffs?commitid=d2cdbcf6a8f2317f250fd54f08aa35dde2fa3e30#3cd772559e0d73afa136d6818023cfd0c4c8ecc00151
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1765584?
The severity of REDHAT-BUG-1765584 is classified as a denial of service vulnerability.
How do I fix REDHAT-BUG-1765584?
To fix REDHAT-BUG-1765584, upgrade the virglrenderer to the latest version beyond 0.8.0.
What are the potential impacts of REDHAT-BUG-1765584?
The potential impacts of REDHAT-BUG-1765584 include system crashes and service interruptions for guest OS users.
Which versions of virglrenderer are affected by REDHAT-BUG-1765584?
Virglrenderer versions up to and including 0.8.0 are affected by REDHAT-BUG-1765584.
Where can I find more details about REDHAT-BUG-1765584?
More details about REDHAT-BUG-1765584 can be found in the bug reports related to the issue.