Moderate CentOS mesa Update

Metadata

medium
6.8
glx-utils-6.5.1-7.11.el5_9.i386.rpm, glx-utils-6.5.1-7.11.el5_9.x86_64.rpm, mesa-6.5.1-7.11.el5_9.src.rpm, mesa-libGL-6.5.1-7.11.el5_9.i386.rpm, mesa-libGL-6.5.1-7.11.el5_9.x86_64.rpm, mesa-libGL-devel-6.5.1-7.11.el5_9.i386.rpm, mesa-libGL-devel-6.5.1-7.11.el5_9.x86_64.rpm, mesa-libGLU-6.5.1-7.11.el5_9.i386.rpm, mesa-libGLU-6.5.1-7.11.el5_9.x86_64.rpm, mesa-libGLU-devel-6.5.1-7.11.el5_9.i386.rpm, mesa-libGLU-devel-6.5.1-7.11.el5_9.x86_64.rpm, mesa-libGLw-6.5.1-7.11.el5_9.i386.rpm, mesa-libGLw-6.5.1-7.11.el5_9.x86_64.rpm, mesa-libGLw-devel-6.5.1-7.11.el5_9.i386.rpm, mesa-libGLw-devel-6.5.1-7.11.el5_9.x86_64.rpm, mesa-libOSMesa-6.5.1-7.11.el5_9.i386.rpm, mesa-libOSMesa-6.5.1-7.11.el5_9.x86_64.rpm, mesa-libOSMesa-devel-6.5.1-7.11.el5_9.i386.rpm, mesa-libOSMesa-devel-6.5.1-7.11.el5_9.x86_64.rpm, mesa-source-6.5.1-7.11.el5_9.i386.rpm, mesa-source-6.5.1-7.11.el5_9.x86_64.rpm
CVE-2013-1993
rhn.redhat.com, lists.centos.org
2013-06-03
2017-07-27 19:05
ALAS-2013-198
Important CentOS mesa Update
CVE-2013-1993 mesa
CVE-2013-1993
2017-04-01 19:07
2017-01-05 20:11

Description


Updated mesa packages that fix multiple security issues are now available
for Red Hat Enterprise Linux 5.

The Red Hat Security Response Team has rated this update as having moderate
security impact. A Common Vulnerability Scoring System (CVSS) base score,
which gives a detailed severity rating, is available from the CVE link in
the References section.

Mesa provides a 3D graphics API that is compatible with Open Graphics
Library (OpenGL). It also provides hardware-accelerated drivers for many
popular graphics chips.

It was found that Mesa did not correctly validate messages from the X
server. A malicious X server could cause an application using Mesa to crash
or, potentially, execute arbitrary code with the privileges of the user
running the application. (CVE-2013-1993)

All users of Mesa are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. All running
applications linked against Mesa must be restarted for this update to take
effect.
Please see https://www.redhat.com/footer/terms-of-use.html

Am I vulnerable?

The constraints below list the versions that this vulnerability is patched in, and versions that are unaffected. If a patch is ready but unrealeased, then it is pending.

Or, you can just let us figure it out for you! Appcanary continously monitor your installed packages, and tell you if any of them are vulnerable.

Sign up for monitoring

Affected package information

Release Package Patched in
5 glx-utils glx-utils-6.5.1-7.11.el5_9.i386.rpm
glx-utils glx-utils-6.5.1-7.11.el5_9.x86_64.rpm
mesa mesa-6.5.1-7.11.el5_9.src.rpm
mesa-libGL mesa-libGL-6.5.1-7.11.el5_9.i386.rpm
mesa-libGL mesa-libGL-6.5.1-7.11.el5_9.x86_64.rpm
mesa-libGL-devel mesa-libGL-devel-6.5.1-7.11.el5_9.i386.rpm
mesa-libGL-devel mesa-libGL-devel-6.5.1-7.11.el5_9.x86_64.rpm
mesa-libGLU mesa-libGLU-6.5.1-7.11.el5_9.i386.rpm
mesa-libGLU mesa-libGLU-6.5.1-7.11.el5_9.x86_64.rpm
mesa-libGLU-devel mesa-libGLU-devel-6.5.1-7.11.el5_9.i386.rpm
mesa-libGLU-devel mesa-libGLU-devel-6.5.1-7.11.el5_9.x86_64.rpm
mesa-libGLw mesa-libGLw-6.5.1-7.11.el5_9.i386.rpm
mesa-libGLw mesa-libGLw-6.5.1-7.11.el5_9.x86_64.rpm
mesa-libGLw-devel mesa-libGLw-devel-6.5.1-7.11.el5_9.i386.rpm
mesa-libGLw-devel mesa-libGLw-devel-6.5.1-7.11.el5_9.x86_64.rpm
mesa-libOSMesa mesa-libOSMesa-6.5.1-7.11.el5_9.i386.rpm
mesa-libOSMesa mesa-libOSMesa-6.5.1-7.11.el5_9.x86_64.rpm
mesa-libOSMesa-devel mesa-libOSMesa-devel-6.5.1-7.11.el5_9.i386.rpm
mesa-libOSMesa-devel mesa-libOSMesa-devel-6.5.1-7.11.el5_9.x86_64.rpm
mesa-source mesa-source-6.5.1-7.11.el5_9.i386.rpm
mesa-source mesa-source-6.5.1-7.11.el5_9.x86_64.rpm