CVE-2022-0175
A flaw was found in the VirGL virtual OpenGL renderer (virglrenderer). The virgl did not properly initialize memory when allocating a host-backed memory resource. A malicious guest could use this flaw to mmap from the guest kernel and read this uninitialized memory from the host, possibly leading to information disclosure.
Scoring
- CVSS base score
- 0.01
- EPSS probability
- 0.13%
- CWE
- CWE-909
- Published
- 2022-08-26
- Last modified
- 2026-03-13
Affected products
- n/a virglrenderer
Weakness type
Related vulnerabilities
- CVE-2026-40687 — In Exim before 4.99.2, when the SPA authentication driver is used with an adversarial SPA resource,...
- CVE-2025-8117 — Account Takeover via Reset Password Functionality in PAD CMS
- CVE-2025-54410 — Moby's Firewalld reload removes bridge network isolation
- CVE-2025-54388 — Moby's Firewalld reload makes published container ports accessible from remote hosts
- CVE-2024-53845 — AES/CBC Constant IV Vulnerability in ESPTouch v2
- CVE-2024-8178 — Multiple issues in ctl(4) CAM Target Layer
- CVE-2024-32945 — LaTeX post content manipulation via renderer state leak across contexts
- CVE-2022-0382 — An information leak flaw was found due to uninitialized memory in the Linux kernel's TIPC protocol...