Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE: 2025:20082-1 moderate update for Mesa security vulnerabilities

suse
Calendar Grey June 4, 2025
Dist Suse Esm H88
SUSE Linux Micro 6.0 addresses three security flaws in Mesa through an urgent update, featuring essential guidance for patching.
* bsc#1222040 * bsc#1222041 * bsc#1222042 Cross-References:

Summary

## This update for Mesa fixes the following issues: * CVE-2023-45913: Fixed NULL pointer dereference via dri2GetGlxDrawableFromXDrawableId() (bsc#1222040). * CVE-2023-45919: Fixed buffer over-read in glXQueryServerString() (bsc#1222041). * CVE-2023-45922: Fixed segmentation violation in __glXGetDrawableAttribute() (bsc#1222042). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.0 zypper in -t patch SUSE-SLE-Micro-6.0-144=1 ## Package List: * SUSE Linux Micro 6.0 (aarch64 s390x x86_64) * Mesa-dri-23.3.4-8.1 * Mesa-libGL1-debuginfo-23.3.4-8.1 * libgbm1-23.3.4-8.1 * Mesa-libglapi0-debuginfo-23.3.4-8.1

References

* bsc#1222040

* bsc#1222041

* bsc#1222042

Cross-

* CVE-2023-45913

* CVE-2023-45919

* CVE-2023-45922

CVSS scores:

* CVE-2023-45913 ( SUSE ): 4.2 CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:N/I:N/A:H

* CVE-2023-45913 ( NVD ): 6.2 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

* CVE-2023-45919 ( SUSE ): 4.8 CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:L/I:N/A:H

* CVE-2023-45919 ( NVD ): 5.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L

* CVE-2023-45922 ( SUSE ): 4.2 CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:N/I:N/A:H

* CVE-2023-45922 ( NVD ): 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

Affected Products:

* SUSE Linux Micro 6.0

An update that solves three vulnerabilities can now be installed.

##

* https://www.suse.com/security/cve/CVE-2023-45913.html

Announcement ID: SUSE-SU-2025:20082-1
Release Date: 2025-02-03T09:06:43Z
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here