oss-sec mailing list archives

Re: Any information on mesa/CVE-2012-2864?


From: Huzaifa Sidhpurwala <huzaifas () redhat com>
Date: Thu, 23 Aug 2012 13:19:52 +0530

On 08/22/2012 03:39 PM, Moritz Muehlenhoff wrote:
Hi,
I noticed the following on
http://googlechromereleases.blogspot.de/2012/08/stable-channel-update-for-chrome-os.html :

    [$3133.7] [141901] Critical CVE-2012-2864: Mesa array overflow. Credit to miaubiz.

The Google bug tracker entry is closed, does anyone have additional information?


The patch for this problem is being discussed by mesa upstream afaik.

More information available at:
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-2864

-- 
Huzaifa Sidhpurwala / Red Hat Security Response Team


Current thread: