CVE-2017-5580 log

Source
Severity Medium
Remote No
Type Denial of service
Description
The parse_instruction function in gallium/auxiliary/tgsi/tgsi_text.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (out-of-bounds array access and process crash) via a crafted texture instruction.
Group Package Affected Fixed Severity Status Ticket
AVG-213 virglrenderer 0.5.0-1 0.6.0-1 Medium Fixed
References
https://cgit.freedesktop.org/virglrenderer/commit/src/gallium/auxiliary/tgsi/tgsi_text.c?id=28894a30a17a84529be102b21118e55d6c9f23fa