An exploitable shared memory permissions vulnerability exists in the functionality of X11 Mesa 3D Graphics Library 19.1.2. An attacker can access the shared memory without any specific permissions to trigger this vulnerability.
References
Link | Resource |
---|---|
https://talosintelligence.com/vulnerability_reports/TALOS-2019-0857 | Exploit Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2019/11/msg00013.html | Mailing List Third Party Advisory |
http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00037.html | Mailing List Third Party Advisory |
https://usn.ubuntu.com/4271-1/ | Third Party Advisory |
https://gitlab.freedesktop.org/mesa/mesa/-/commit/02c3dad0f3b4d26e0faa5cc51d06bc50d693dcdc | Patch Third Party Advisory |
https://lists.freedesktop.org/pipermail/mesa-dev/2019-October/223704.html | Mailing List Patch Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Information
Published : 2019-11-05 14:15
Updated : 2022-06-21 12:23
NVD link : CVE-2019-5068
Mitre link : CVE-2019-5068
JSON object : View
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
Products Affected
debian
- debian_linux
canonical
- ubuntu_linux
opensuse
- leap
mesa3d
- mesa