{ "id": "CVE-2023-45913", "sourceIdentifier": "cve@mitre.org", "published": "2024-03-27T04:15:10.590", "lastModified": "2024-08-02T21:15:46.620", "vulnStatus": "Awaiting Analysis", "cveTags": [ { "sourceIdentifier": "cve@mitre.org", "tags": [ "disputed" ] } ], "descriptions": [ { "lang": "en", "value": "Mesa v23.0.4 was discovered to contain a NULL pointer dereference via the function dri2GetGlxDrawableFromXDrawableId(). This vulnerability is triggered when the X11 server sends an DRI2_BufferSwapComplete event unexpectedly when the application is using DRI3. NOTE: this is disputed because there is no scenario in which the vulnerability was demonstrated." }, { "lang": "es", "value": "Se descubri\u00f3 que Mesa v23.0.4 conten\u00eda una desreferencia de puntero NULL mediante la funci\u00f3n dri2GetGlxDrawableFromXDrawableId(). Esta vulnerabilidad se activa cuando el servidor X11 env\u00eda un evento DRI2_BufferSwapComplete inesperadamente cuando la aplicaci\u00f3n usa DRI3. NOTA: esto est\u00e1 en disputa porque no existe ning\u00fan escenario en el que se demuestre la vulnerabilidad." } ], "metrics": {}, "references": [ { "url": "http://seclists.org/fulldisclosure/2024/Jan/28", "source": "cve@mitre.org" }, { "url": "https://gitlab.freedesktop.org/mesa/mesa/-/issues/9856", "source": "cve@mitre.org" }, { "url": "https://seclists.org/fulldisclosure/2024/Jan/71", "source": "cve@mitre.org" } ] }