PT-2024-13306 · Libglvnd+2 · Libglvnd+2
Meng Ruijie
·
Published
2024-03-26
·
Updated
2024-08-06
·
CVE-2023-45924
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
OpenGL libglvnd version bb06db5a
Description
A segmentation violation was discovered in the libglxproto.c file of OpenGL libglvnd via the
glXGetDrawableScreen() function. This issue is disputed as there are no common situations where users require uninterrupted operation with an attacker-controlled server.Recommendations
For version bb06db5a, as a temporary workaround, consider restricting the use of the
glXGetDrawableScreen() function until a patch is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.NULL Pointer Dereference
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Debian
Red Os
Libglvnd