Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2020:0017-1

Опубликовано: 07 янв. 2020
Источник: suse-cvrf

Описание

Security update for virglrenderer

This update for virglrenderer fixes the following issues:

  • CVE-2019-18388: Fixed a null pointer dereference which could have led to denial of service (bsc#1159479).
  • CVE-2019-18390: Fixed an out of bound read which could have led to denial of service (bsc#1159478).
  • CVE-2019-18389: Fixed a heap buffer overflow which could have led to guest escape or denial of service (bsc#1159482).
  • CVE-2019-18391: Fixed a heap based buffer overflow which could have led to guest escape or denial of service (bsc#1159486).

Список пакетов

Container suse/sles/15.2/virt-launcher:0.38.1
libvirglrenderer0-0.6.0-4.3.1
SUSE Linux Enterprise Module for Server Applications 15
libvirglrenderer0-0.6.0-4.3.1
virglrenderer-devel-0.6.0-4.3.1
SUSE Linux Enterprise Module for Server Applications 15 SP1
libvirglrenderer0-0.6.0-4.3.1
virglrenderer-devel-0.6.0-4.3.1

Описание

A NULL pointer dereference in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via malformed commands.


Затронутые продукты
Container suse/sles/15.2/virt-launcher:0.38.1:libvirglrenderer0-0.6.0-4.3.1
SUSE Linux Enterprise Module for Server Applications 15 SP1:libvirglrenderer0-0.6.0-4.3.1
SUSE Linux Enterprise Module for Server Applications 15 SP1:virglrenderer-devel-0.6.0-4.3.1
SUSE Linux Enterprise Module for Server Applications 15:libvirglrenderer0-0.6.0-4.3.1

Ссылки

Описание

A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service, or QEMU guest-to-host escape and code execution, via VIRGL_CCMD_RESOURCE_INLINE_WRITE commands.


Затронутые продукты
Container suse/sles/15.2/virt-launcher:0.38.1:libvirglrenderer0-0.6.0-4.3.1
SUSE Linux Enterprise Module for Server Applications 15 SP1:libvirglrenderer0-0.6.0-4.3.1
SUSE Linux Enterprise Module for Server Applications 15 SP1:virglrenderer-devel-0.6.0-4.3.1
SUSE Linux Enterprise Module for Server Applications 15:libvirglrenderer0-0.6.0-4.3.1

Ссылки

Описание

An out-of-bounds read in the vrend_blit_need_swizzle function in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via VIRGL_CCMD_BLIT commands.


Затронутые продукты
Container suse/sles/15.2/virt-launcher:0.38.1:libvirglrenderer0-0.6.0-4.3.1
SUSE Linux Enterprise Module for Server Applications 15 SP1:libvirglrenderer0-0.6.0-4.3.1
SUSE Linux Enterprise Module for Server Applications 15 SP1:virglrenderer-devel-0.6.0-4.3.1
SUSE Linux Enterprise Module for Server Applications 15:libvirglrenderer0-0.6.0-4.3.1

Ссылки

Описание

A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via VIRGL_CCMD_RESOURCE_INLINE_WRITE commands.


Затронутые продукты
Container suse/sles/15.2/virt-launcher:0.38.1:libvirglrenderer0-0.6.0-4.3.1
SUSE Linux Enterprise Module for Server Applications 15 SP1:libvirglrenderer0-0.6.0-4.3.1
SUSE Linux Enterprise Module for Server Applications 15 SP1:virglrenderer-devel-0.6.0-4.3.1
SUSE Linux Enterprise Module for Server Applications 15:libvirglrenderer0-0.6.0-4.3.1

Ссылки