Lucene search

K
osvGoogleOSV:CVE-2019-18389
HistoryDec 23, 2019 - 4:15 p.m.

CVE-2019-18389

2019-12-2316:15:11
Google
osv.dev
15

EPSS

0.001

Percentile

30.7%

A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service, or QEMU guest-to-host escape and code execution, via VIRGL_CCMD_RESOURCE_INLINE_WRITE commands.