Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2020:0058-1

Опубликовано: 14 янв. 2020
Источник: suse-cvrf

Описание

Security update for virglrenderer

This update for virglrenderer fixes the following issues:

  • CVE-2019-18388: Fixed a null pointer dereference which could have led to denial of service (bsc#1159479).
  • CVE-2019-18390: Fixed an out of bound read which could have led to denial of service (bsc#1159478).
  • CVE-2019-18389: Fixed a heap buffer overflow which could have led to guest escape or denial of service (bsc#1159482).
  • CVE-2019-18391: Fixed a heap based buffer overflow which could have led to guest escape or denial of service (bsc#1159486).

This update was imported from the SUSE:SLE-15:Update update project.

Список пакетов

openSUSE Leap 15.1
libvirglrenderer0-0.6.0-lp151.4.3.1
virglrenderer-devel-0.6.0-lp151.4.3.1
virglrenderer-test-server-0.6.0-lp151.4.3.1

Описание

A NULL pointer dereference in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via malformed commands.


Затронутые продукты
openSUSE Leap 15.1:libvirglrenderer0-0.6.0-lp151.4.3.1
openSUSE Leap 15.1:virglrenderer-devel-0.6.0-lp151.4.3.1
openSUSE Leap 15.1:virglrenderer-test-server-0.6.0-lp151.4.3.1

Ссылки

Описание

A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service, or QEMU guest-to-host escape and code execution, via VIRGL_CCMD_RESOURCE_INLINE_WRITE commands.


Затронутые продукты
openSUSE Leap 15.1:libvirglrenderer0-0.6.0-lp151.4.3.1
openSUSE Leap 15.1:virglrenderer-devel-0.6.0-lp151.4.3.1
openSUSE Leap 15.1:virglrenderer-test-server-0.6.0-lp151.4.3.1

Ссылки

Описание

An out-of-bounds read in the vrend_blit_need_swizzle function in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via VIRGL_CCMD_BLIT commands.


Затронутые продукты
openSUSE Leap 15.1:libvirglrenderer0-0.6.0-lp151.4.3.1
openSUSE Leap 15.1:virglrenderer-devel-0.6.0-lp151.4.3.1
openSUSE Leap 15.1:virglrenderer-test-server-0.6.0-lp151.4.3.1

Ссылки

Описание

A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via VIRGL_CCMD_RESOURCE_INLINE_WRITE commands.


Затронутые продукты
openSUSE Leap 15.1:libvirglrenderer0-0.6.0-lp151.4.3.1
openSUSE Leap 15.1:virglrenderer-devel-0.6.0-lp151.4.3.1
openSUSE Leap 15.1:virglrenderer-test-server-0.6.0-lp151.4.3.1

Ссылки