Bug ID 1162519
Summary VUL-1: CVE-2020-8002: virglrenderer: NULL pointer dereference in vrend_renderer.c
Classification openSUSE
Product openSUSE Distribution
Version Leap 15.1
Hardware Other
URL https://smash.suse.de/issue/251889/
OS Other
Status NEW
Severity Normal
Priority P5 - None
Component Security
Assignee brogers@suse.com
Reporter atoptsoglou@suse.com
QA Contact security-team@suse.de
Found By Security Response Team
Blocker ---

CVE-2020-8002

A NULL pointer dereference in vrend_renderer.c in virglrenderer through 0.8.1
allows attackers to cause a denial of service via commands that attempt to
launch a grid without previously providing a Compute Shader (CS).

References:

https://gitlab.freedesktop.org/virgl/virglrenderer/merge_requests/340
https://gitlab.freedesktop.org/virgl/virglrenderer/merge_requests/340/diffs?commit_id=572a36879701598fa727f50313508be99865b58f
https://gitlab.freedesktop.org/virgl/virglrenderer/merge_requests/340/diffs?commit_id=725e12beba4a41934f0ab62d399b5d4de2d13190

References:
https://bugzilla.redhat.com/show_bug.cgi?id=1796646
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2020-8002
http://people.canonical.com/~ubuntu-security/cve/2020/CVE-2020-8002.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-8002
https://gitlab.freedesktop.org/virgl/virglrenderer/merge_requests/340/diffs?commit_id=725e12beba4a41934f0ab62d399b5d4de2d13190
https://gitlab.freedesktop.org/virgl/virglrenderer/merge_requests/340
https://gitlab.freedesktop.org/virgl/virglrenderer/merge_requests/340/diffs?commit_id=572a36879701598fa727f50313508be99865b58f


You are receiving this mail because: