CVE-2019-18390

Source
https://cve.org/CVERecord?id=CVE-2019-18390
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-18390.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2019-18390
Downstream
Related
Published
2019-12-23T16:15:11.243Z
Modified
2026-02-04T17:34:56.910913Z
Severity
  • 7.1 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H CVSS Calculator
Summary
[none]
Details

An out-of-bounds read in the vrendblitneedswizzle function in vrendrenderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via VIRGLCCMDBLIT commands.

References

Affected packages

Git / gitlab.freedesktop.org/virgl/virglrenderer

Affected ranges

Type
GIT
Repo
https://gitlab.freedesktop.org/virgl/virglrenderer
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

virglrenderer-0.*
virglrenderer-0.2.0
virglrenderer-0.4.0
virglrenderer-0.5.0
virglrenderer-0.6.0
virglrenderer-0.7.0
virglrenderer-0.8.0

Database specific

vanir_signatures
[
    {
        "deprecated": false,
        "source": "https://gitlab.freedesktop.org/virgl/virglrenderer@24f67de7a9088a873844a39be03cee6882260ac9",
        "id": "CVE-2019-18390-1dd0f6fb",
        "target": {
            "file": "src/virgl_hw.h"
        },
        "digest": {
            "line_hashes": [
                "295718410517094950528114583803510995894",
                "43468277317181871649856080072575986996",
                "249655131899309062348327631190168477966"
            ],
            "threshold": 0.9
        },
        "signature_type": "Line",
        "signature_version": "v1"
    },
    {
        "deprecated": false,
        "source": "https://gitlab.freedesktop.org/virgl/virglrenderer@24f67de7a9088a873844a39be03cee6882260ac9",
        "id": "CVE-2019-18390-6bbeadc1",
        "target": {
            "file": "src/vrend_renderer.c"
        },
        "digest": {
            "line_hashes": [
                "203327541951848299864613017926910193462",
                "42597155943745953960949306703066152174",
                "163259354468978262870234779266794485686",
                "104382142299863661724756600661953964042",
                "195073412259000187659366091482833080495",
                "221501829541838785924229101314879422744",
                "272004653704100493015803223915055268624"
            ],
            "threshold": 0.9
        },
        "signature_type": "Line",
        "signature_version": "v1"
    },
    {
        "deprecated": false,
        "source": "https://gitlab.freedesktop.org/virgl/virglrenderer@24f67de7a9088a873844a39be03cee6882260ac9",
        "id": "CVE-2019-18390-e6c43cf8",
        "target": {
            "file": "src/vrend_renderer.c",
            "function": "vrend_renderer_blit"
        },
        "digest": {
            "function_hash": "103917660898869094351024064010480370128",
            "length": 2421.0
        },
        "signature_type": "Function",
        "signature_version": "v1"
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-18390.json"