Heap-based buffer overflow in the vrendcreatevertexelementsstate function in vrendrenderer.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (out-of-bounds array access and crash) via the numelements parameter.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-5994.json"