An out-of-bounds write issue was found in the VirGL virtual OpenGL renderer (virglrenderer). This flaw allows a malicious guest to create a specially crafted virgil resource and then issue a VIRTGPU_EXECBUFFER ioctl, leading to a denial of service or possible code execution.
| Software | From | Fixed in |
|---|---|---|
| virglrenderer_project / virglrenderer | 0.8.1 | 0.10.0 |
| redhat / enterprise_linux | 8.0 | 8.0.x |
| debian / debian_linux | 10.0 | 10.0.x |