QID 198682

Date Published: 2022-03-01

QID 198682: Ubuntu Security Notification for virglrenderer Vulnerabilities (USN-5309-1)

Virglrenderer incorrectly handled memory.
Virglrenderer incorrectly initialized memory.

Anattacker inside a guest could use this issue to cause virglrenderer tocrash, resulting in a denial of service, or possibly execute arbitrarycode.
Anattacker inside a guest could possibly use this issue to obtain sensitivehost information.

  • CVSS V3 rated as High - 6.2 severity.
  • CVSS V2 rated as Medium - 5.4 severity.
  • Solution
    Refer to Ubuntu security advisory USN-5309-1 for updates and patch information.
    Vendor References

    CVEs related to QID 198682

    Software Advisories
    Advisory ID Software Component Link
    USN-5309-1 Ubuntu Linux URL Logo ubuntu.com/security/notices/USN-5309-1