CVE-2016-10028 | QEMU Virtio GPU Device Emulator virtio-gpu-3d.c virgl_cmd_get_capset out-of-bounds (Nessus ID 96782 / ID 169798)
A vulnerability, which was classified as problematic, was found in QEMU. Affected is the function virgl_cmd_get_capset of the file hw/display/virtio-gpu-3d.c of the component Virtio GPU Device Emulator. The manipulation leads to out-of-bounds read.
This vulnerability is traded as CVE-2016-10028. The attack needs to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.