CVE-2023-45913: Null Pointer Dereference
Mesa v23.0.4 was discovered to contain a NULL pointer dereference via the function dri2GetGlxDrawableFromXDrawableId(). This vulnerability is triggered when the X11 server sends an DRI2BufferSwapComplete event unexpectedly when the application is using DRI3. NOTE: this is disputed because there is no scenario in which the vulnerability was demonstrated.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-45913?
CVE-2023-45913 has been reported as having a medium severity due to the potential for a NULL pointer dereference in the Mesa library.
How do I fix CVE-2023-45913?
To fix CVE-2023-45913, update to the latest version of Mesa that addresses this vulnerability.
What impact does CVE-2023-45913 have on software systems?
CVE-2023-45913 can cause application crashes when the DRI2_BufferSwapComplete event is triggered unexpectedly.
Which versions of Mesa are affected by CVE-2023-45913?
CVE-2023-45913 specifically affects Mesa version 23.0.4.
Is CVE-2023-45913 being disputed?
Yes, the details surrounding CVE-2023-45913 are disputed due to conflicting reports about its impact.