Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 38 Security Advisory: 2024-0356803680 Critical Freeglut Memory Leak

fedora
Calendar Grey February 21, 2024
Dist Fedora Esm H88
Update for freeglut rectifies memory leak concerns in Fedora, encompassing CVE-2024-24260 and CVE-2024-24261 vulnerabilities.
Patch for CVE-2024-24258 and CVE-2024-24259

Summary

freeglut is a completely open source alternative to the OpenGL Utility Toolkit

(GLUT) library with an OSI approved free software license. GLUT was originally

written by Mark Kilgard to support the sample programs in the second edition

OpenGL 'RedBook'. Since then, GLUT has been used in a wide variety of practical

applications because it is simple, universally available and highly portable.

freeglut allows the user to create and manage windows containing OpenGL

contexts on a wide range of platforms and also read the mouse, keyboard and

joystick functions.

Update Information:

Patch for CVE-2024-24258 and CVE-2024-24259

Change Log

* Mon Feb 12 2024 Gwyn Ciesla - 3.4.0-7 - Patch for CVE-2024-24258 and CVE-2024-24259 * Wed Jan 24 2024 Fedora Release Engineering - 3.4.0-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Fri Jan 19 2024 Fedora Release Engineering - 3.4.0-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Wed Jul 19 2023 Fedora Release Engineering - 3.4.0-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Fri Mar 3 2023 Gwyn Ciesla - 3.4.0-3 - migrated to SPDX license

References


[ 1 ] Bug #2263941 - CVE-2024-24258 freeglut: memory leak via glutAddSubMenu() function [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2263941 [ 2 ] Bug #2263946 - CVE-2024-24259 freeglut: memory leak via glutAddMenuEntry() function [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2263946

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-0356803680' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
critical
Lowest
Low
Medium
High
Critical

Name: freeglut
Product: Fedora 38
Version: 3.4.0
Release: 7.fc38
Summary: A freely licensed alternative to the GLUT library

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here