Novell Home

CVE-2013-1872

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

Upstream information

CVE-2013-1872 at MITRE

Description

The Intel drivers in Mesa 8.0.x and 9.0.x allow context-dependent attackers to cause a denial of service (reachable assertion and crash) and possibly execute arbitrary code via vectors involving 3d graphics that trigger an out-of-bounds array access, related to the fs_visitor::remove_dead_constants function. NOTE: this issue might be related to CVE-2013-0796.

NVD CVSS v2 Base Score: 6.8 (AV:N/AC:M/Au:N/C:P/I:P/A:P)

Novell/SUSE information

Novell Bugzilla entry: 828007

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SLE 11 SP3 DEBUGINFO
  • Mesa-debuginfo >= 9.0.3-0.19.1
  • Mesa-debugsource >= 9.0.3-0.19.1
Builds
SAT Patch Nr: 8011
SLE 11 SP3 DEBUGINFO
  • Mesa-debuginfo >= 9.0.3-0.19.1
  • Mesa-debuginfo-x86 >= 9.0.3-0.19.1
  • Mesa-debugsource >= 9.0.3-0.19.1
Builds
SAT Patch Nr: 8011
SLE 11 SP3 DEBUGINFO
  • Mesa-debuginfo >= 9.0.3-0.19.1
  • Mesa-debuginfo-32bit >= 9.0.3-0.19.1
  • Mesa-debugsource >= 9.0.3-0.19.1
Builds
SAT Patch Nr: 8011
SUSE Linux Enterprise Software Development Kit 11 SP3
  • Mesa-devel >= 9.0.3-0.19.1
Builds
SAT Patch Nr: 8011
SUSE Linux Enterprise Software Development Kit 11 SP3
  • Mesa-devel >= 9.0.3-0.19.1
  • Mesa-devel-32bit >= 9.0.3-0.19.1
Builds
SAT Patch Nr: 8011
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP3 for VMware
  • Mesa >= 9.0.3-0.19.1
Builds
SAT Patch Nr: 8011
SUSE Linux Enterprise Server 11 SP3
  • Mesa >= 9.0.3-0.19.1
  • Mesa-x86 >= 9.0.3-0.19.1
Builds
SAT Patch Nr: 8011
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP3 for VMware
  • Mesa >= 9.0.3-0.19.1
  • Mesa-32bit >= 9.0.3-0.19.1
Builds
SAT Patch Nr: 8011

© 2014 Novell