PT-2024-13306 · Libglvnd+2 · Libglvnd+2

Meng Ruijie

·

Published

2024-03-26

·

Updated

2024-08-06

·

CVE-2023-45924

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions OpenGL libglvnd version bb06db5a
Description A segmentation violation was discovered in the libglxproto.c file of OpenGL libglvnd via the glXGetDrawableScreen() function. This issue is disputed as there are no common situations where users require uninterrupted operation with an attacker-controlled server.
Recommendations For version bb06db5a, as a temporary workaround, consider restricting the use of the glXGetDrawableScreen() function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Stack Overflow

Weakness Enumeration

Related Identifiers

CVE-2023-45924

Affected Products

Debian
Red Os
Libglvnd