REDHAT-BUG-1765589: Buffer Overflow
A heap-based buffer overflow in the vrendrenderertransferwriteiov function in vrendrenderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via VIRGLCCMDRESOURCEINLINEWRITE commands.
Upstream Issue:
https://gitlab.freedesktop.org/virgl/virglrenderer/mergerequests/314/diffs?commitid=8c9cfb4e425542e96f0717189fe4658555baaf08
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1765589?
The severity of REDHAT-BUG-1765589 is critical due to the potential for a denial of service caused by a heap-based buffer overflow.
How do I fix REDHAT-BUG-1765589?
To fix REDHAT-BUG-1765589, it is recommended to upgrade to virglrenderer version 0.8.1 or later.
What systems are affected by REDHAT-BUG-1765589?
REDHAT-BUG-1765589 affects virglrenderer versions up to and including 0.8.0.
Can REDHAT-BUG-1765589 be exploited remotely?
Yes, REDHAT-BUG-1765589 can potentially be exploited by guest OS users to trigger a denial of service.
What are the impacts of REDHAT-BUG-1765589?
The impact of REDHAT-BUG-1765589 is a denial of service, which can disrupt the functionality of applications relying on virglrenderer.