Lucene search

K
osvGoogleOSV:USN-5309-1
HistoryFeb 28, 2022 - 5:44 p.m.

virglrenderer vulnerabilities

2022-02-2817:44:06
Google
osv.dev
14
virglrenderer
memory
vulnerabilities
denial of service
arbitrary code
cve-2022-0135
cve-2022-0175
initialization error
sensitive information
host.

AI Score

7.2

Confidence

High

EPSS

0.001

Percentile

17.0%

It was discovered that virglrenderer incorrectly handled memory. An
attacker inside a guest could use this issue to cause virglrenderer to
crash, resulting in a denial of service, or possibly execute arbitrary
code. (CVE-2022-0135)

It was discovered that virglrenderer incorrectly initialized memory. An
attacker inside a guest could possibly use this issue to obtain sensitive
host information. (CVE-2022-0175)