PT-2024-13306 · Libglvnd+2 · Libglvnd+2
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
OpenGL libglvnd version bb06db5a
Description
A segmentation violation was discovered in the libglxproto.c file of OpenGL libglvnd via the
glXGetDrawableScreen() function. This issue is disputed as there are no common situations where users require uninterrupted operation with an attacker-controlled server.Recommendations
For version bb06db5a, as a temporary workaround, consider restricting the use of the
glXGetDrawableScreen() function until a patch is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.Stack Overflow
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Debian
Red Os
Libglvnd