Описание
Security update for Mesa
This update for Mesa fixes the following issue:
- CVE-2026-40393: out-of-bounds memory access can occur in WebGPU because the amount of to-be-allocated data depends on an untrusted party (bsc#1261998).
Список пакетов
openSUSE Leap 16.0
Mesa-24.3.3-160000.3.1
Mesa-KHR-devel-24.3.3-160000.3.1
Mesa-devel-24.3.3-160000.3.1
Mesa-dri-24.3.3-160000.3.1
Mesa-dri-devel-24.3.3-160000.3.1
Mesa-dri-nouveau-24.3.3-160000.3.1
Mesa-dri-vc4-24.3.3-160000.3.1
Mesa-gallium-24.3.3-160000.3.1
Mesa-libEGL-devel-24.3.3-160000.3.1
Mesa-libEGL1-24.3.3-160000.3.1
Mesa-libGL-devel-24.3.3-160000.3.1
Mesa-libGL1-24.3.3-160000.3.1
Mesa-libGLESv1_CM-devel-24.3.3-160000.3.1
Mesa-libGLESv2-devel-24.3.3-160000.3.1
Mesa-libGLESv3-devel-24.3.3-160000.3.1
Mesa-libOpenCL-24.3.3-160000.3.1
Mesa-libRusticlOpenCL-24.3.3-160000.3.1
Mesa-libd3d-24.3.3-160000.3.1
Mesa-libd3d-devel-24.3.3-160000.3.1
Mesa-libglapi-devel-24.3.3-160000.3.1
Mesa-libglapi0-24.3.3-160000.3.1
Mesa-libva-24.3.3-160000.3.1
Mesa-vulkan-device-select-24.3.3-160000.3.1
Mesa-vulkan-overlay-24.3.3-160000.3.1
libOSMesa-devel-24.3.3-160000.3.1
libOSMesa8-24.3.3-160000.3.1
libgbm-devel-24.3.3-160000.3.1
libgbm1-24.3.3-160000.3.1
libvdpau_d3d12-24.3.3-160000.3.1
libvdpau_nouveau-24.3.3-160000.3.1
libvdpau_r600-24.3.3-160000.3.1
libvdpau_radeonsi-24.3.3-160000.3.1
libvdpau_virtio_gpu-24.3.3-160000.3.1
libvulkan_broadcom-24.3.3-160000.3.1
libvulkan_freedreno-24.3.3-160000.3.1
libvulkan_intel-24.3.3-160000.3.1
libvulkan_lvp-24.3.3-160000.3.1
libvulkan_radeon-24.3.3-160000.3.1
libxatracker-devel-1.0.0-160000.3.1
libxatracker2-1.0.0-160000.3.1
Ссылки
- SUSE Security Ratings
- SUSE Bug 1261911
- SUSE Bug 1261998
- SUSE CVE CVE-2026-40393 page
Описание
In Mesa before 25.3.6 and 26 before 26.0.1, out-of-bounds memory access can occur in WebGPU because the amount of to-be-allocated data depends on an untrusted party, and is then used for alloca.
Затронутые продукты
openSUSE Leap 16.0:Mesa-24.3.3-160000.3.1
openSUSE Leap 16.0:Mesa-KHR-devel-24.3.3-160000.3.1
openSUSE Leap 16.0:Mesa-devel-24.3.3-160000.3.1
openSUSE Leap 16.0:Mesa-dri-24.3.3-160000.3.1
Ссылки
- CVE-2026-40393
- SUSE Bug 1261998