openSUSE Security Update : Mesa (openSUSE-2013-366)

This script is Copyright (C) 2014 Tenable Network Security, Inc.


Synopsis :

The remote openSUSE host is missing a security update.

Description :

This Mesa update fixes the following security bug: CVE-2013-1993:
Integer overflows in XF86DRIOpenConnection and
XF86DRIGetClientDriverName were fixed that could lead to client
crashes when using a malicious X server.

This update fixes the following issue for Mesa on openSUSE 12.3 :

- bnc#814947, fdo#62141: Make sure we do render between
two hiz flushes

See also :

http://lists.opensuse.org/opensuse-updates/2013-06/msg00007.html
https://bugs.freedesktop.org/show_bug.cgi?id=62141
https://bugzilla.novell.com/show_bug.cgi?id=814947
https://bugzilla.novell.com/show_bug.cgi?id=815451
https://bugzilla.novell.com/show_bug.cgi?id=821855

Solution :

Update the affected Mesa packages.

Risk factor :

Medium / CVSS Base Score : 6.8
(CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:P)

Family: SuSE Local Security Checks

Nessus Plugin ID: 74977 ()

Bugtraq ID:

CVE ID: CVE-2013-1993

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now