[ubuntu/impish-updates] virglrenderer 0.8.2-5ubuntu0.21.10.1 (Accepted)

Ubuntu Archive Robot ubuntu-archive-robot at lists.canonical.com
Mon Feb 28 18:28:12 UTC 2022


virglrenderer (0.8.2-5ubuntu0.21.10.1) impish-security; urgency=medium

  * SECURITY UPDATE: out-of-bounds write in read_transfer_data()
    - debian/patches/CVE-2022-0135.patch: Add test to resource OOB write
      and fix it in src/vrend_renderer.c, tests/test_fuzzer_formats.c.
    - CVE-2022-0135
  * SECURITY UPDATE: info leak in vrend_resource_alloc_buffer()
    - debian/patches/CVE-2022-0175.patch: clear memory when allocating a
      host-backed memory resource in src/vrend_renderer.c,
      tests/test_virgl_transfer.c.
    - CVE-2022-0175

Date: 2022-02-24 13:14:10.316598+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
Signed-By: Ubuntu Archive Robot <ubuntu-archive-robot at lists.canonical.com>
https://launchpad.net/ubuntu/+source/virglrenderer/0.8.2-5ubuntu0.21.10.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the impish-changes mailing list