glx_pbuffer.c in Mesa 23.0.4 was discovered to contain a segmentation violation when calling __glXGetDrawableAttribute(). NOTE: this is disputed because there are no common situations in which users require uninterrupted operation with an attacker-controller server.
The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.
Link | Tags |
---|---|
https://gitlab.freedesktop.org/mesa/mesa/-/issues/9857 | |
http://seclists.org/fulldisclosure/2024/Jan/50 | mailing list |
http://seclists.org/fulldisclosure/2024/Jan/71 | mailing list |