The vrend_decode_reset function in vrend_decode.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (NULL pointer dereference and QEMU process crash) by destroying context 0 (zero).
The product dereferences a pointer that it expects to be valid but is NULL.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Virglrenderer | Virglrenderer_project | * | 0.5.0 (including) |
| Virglrenderer | Ubuntu | artful | * |
| Virglrenderer | Ubuntu | upstream | * |
| Virglrenderer | Ubuntu | yakkety | * |
| Virglrenderer | Ubuntu | zesty | * |