Bugzilla – Bug 1222041
VUL-0: CVE-2023-45919: Mesa: buffer over-read in glXQueryServerString()
Last modified: 2024-03-27 10:14:27 UTC
Mesa 23.0.4 was discovered to contain a buffer over-read in glXQueryServerString(). NOTE: this is disputed because there are no common situations in which users require uninterrupted operation with an attacker-controller server. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-45919 http://seclists.org/fulldisclosure/2024/Jan/47 https://gitlab.freedesktop.org/mesa/mesa/-/issues/9858 https://www.cve.org/CVERecord?id=CVE-2023-45919
Ok. Thanks. Not sure what to do with this now. I would like to at least watch the issue on gitlab fdo, but seems this is not supported. I could try to poll this from time to time. But no promises given.