CVE-2013-1872

The Intel drivers in Mesa 8.0.x and 9.0.x allow context-dependent attackers to cause a denial of service (reachable assertion and crash) and possibly execute arbitrary code via vectors involving 3d graphics that trigger an out-of-bounds array access, related to the fs_visitor::remove_dead_constants function. NOTE: this issue might be related to CVE-2013-0796.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mesa3d:mesa:9.0:*:*:*:*:*:*:*
cpe:2.3:a:mesa3d:mesa:9.0.1:*:*:*:*:*:*:*
cpe:2.3:a:mesa3d:mesa:9.0.2:*:*:*:*:*:*:*
cpe:2.3:a:mesa3d:mesa:9.0.3:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:canonical:ubuntu_linux:12.04:-:lts:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:13.04:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:opensuse:12.2:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:opensuse:12.3:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:a:mesa3d:mesa:8.0:*:*:*:*:*:*:*
cpe:2.3:a:mesa3d:mesa:8.0.1:*:*:*:*:*:*:*
cpe:2.3:a:mesa3d:mesa:8.0.2:*:*:*:*:*:*:*
cpe:2.3:a:mesa3d:mesa:8.0.3:*:*:*:*:*:*:*
cpe:2.3:a:mesa3d:mesa:8.0.4:*:*:*:*:*:*:*
cpe:2.3:a:mesa3d:mesa:8.0.5:*:*:*:*:*:*:*

History

07 Nov 2023, 02:14

Type Values Removed Values Added
Summary The Intel drivers in Mesa 8.0.x and 9.0.x allow context-dependent attackers to cause a denial of service (reachable assertion and crash) and possibly execute arbitrary code via vectors involving 3d graphics that trigger an out-of-bounds array access, related to the fs_visitor::remove_dead_constants function. NOTE: this issue might be related to CVE-2013-0796. The Intel drivers in Mesa 8.0.x and 9.0.x allow context-dependent attackers to cause a denial of service (reachable assertion and crash) and possibly execute arbitrary code via vectors involving 3d graphics that trigger an out-of-bounds array access, related to the fs_visitor::remove_dead_constants function. NOTE: this issue might be related to CVE-2013-0796.

13 Feb 2023, 04:41

Type Values Removed Values Added
References
  • {'url': 'https://access.redhat.com/errata/RHSA-2013:0897', 'name': 'https://access.redhat.com/errata/RHSA-2013:0897', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://access.redhat.com/security/cve/CVE-2013-1872', 'name': 'https://access.redhat.com/security/cve/CVE-2013-1872', 'tags': [], 'refsource': 'MISC'}
Summary CVE-2013-1872 Mesa: Memory corruption (OOB read/write) on intel drivers The Intel drivers in Mesa 8.0.x and 9.0.x allow context-dependent attackers to cause a denial of service (reachable assertion and crash) and possibly execute arbitrary code via vectors involving 3d graphics that trigger an out-of-bounds array access, related to the fs_visitor::remove_dead_constants function. NOTE: this issue might be related to CVE-2013-0796.

02 Feb 2023, 15:16

Type Values Removed Values Added
References
  • (MISC) https://access.redhat.com/errata/RHSA-2013:0897 -
  • (MISC) https://access.redhat.com/security/cve/CVE-2013-1872 -
Summary The Intel drivers in Mesa 8.0.x and 9.0.x allow context-dependent attackers to cause a denial of service (reachable assertion and crash) and possibly execute arbitrary code via vectors involving 3d graphics that trigger an out-of-bounds array access, related to the fs_visitor::remove_dead_constants function. NOTE: this issue might be related to CVE-2013-0796. CVE-2013-1872 Mesa: Memory corruption (OOB read/write) on intel drivers

Information

Published : 2013-08-19 23:55

Updated : 2023-12-10 11:16


NVD link : CVE-2013-1872

Mitre link : CVE-2013-1872

CVE.ORG link : CVE-2013-1872


JSON object : View

Products Affected

redhat

  • enterprise_linux

canonical

  • ubuntu_linux

mesa3d

  • mesa

opensuse

  • opensuse
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer