Summary: | <dev-util/nvidia-cuda-toolkit-11.1.1: OOB read/write in vulnerable NVJPEG library (CVE-2020-5991) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | John Helmert III <ajak> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | trivial | CC: | sci |
Priority: | Normal | Keywords: | PullRequest |
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://nvidia.custhelp.com/app/answers/detail/a_id/5094 | ||
See Also: |
https://github.com/gentoo/gentoo/pull/18822 https://github.com/gentoo/gentoo/pull/24683 |
||
Whiteboard: | ~1 [noglsa] | ||
Package list: | Runtime testing required: | --- |
Description
John Helmert III
![]() ![]() ![]() ![]() The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=ca72dce41454b63e96cec1fc1e4e34ea0b48a315 commit ca72dce41454b63e96cec1fc1e4e34ea0b48a315 Author: David Seifert <soap@gentoo.org> AuthorDate: 2020-12-27 20:08:56 +0000 Commit: David Seifert <soap@gentoo.org> CommitDate: 2020-12-27 20:08:56 +0000 dev-util/nvidia-cuda-toolkit: Version bump to 11.2.0 Bug: https://bugs.gentoo.org/691284 Bug: https://bugs.gentoo.org/749903 Bug: https://bugs.gentoo.org/760708 Package-Manager: Portage-3.0.12, Repoman-3.0.2 Signed-off-by: David Seifert <soap@gentoo.org> dev-util/nvidia-cuda-toolkit/Manifest | 1 + ...da-toolkit-11.2.0-nsight-systems-launcher.patch | 12 + .../nvidia-cuda-toolkit-11.2.0.ebuild | 258 +++++++++++++++++++++ 3 files changed, 271 insertions(+) Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=0bf1115193ab82db31e31e684938d9c2b1749308 commit 0bf1115193ab82db31e31e684938d9c2b1749308 Author: David Seifert <soap@gentoo.org> AuthorDate: 2021-12-20 10:57:39 +0000 Commit: David Seifert <soap@gentoo.org> CommitDate: 2021-12-20 10:57:39 +0000 profiles: last-rite CUDA 10 Closes: https://github.com/gentoo/gentoo/pull/23425 Bug: https://bugs.gentoo.org/721808 Bug: https://bugs.gentoo.org/760708 Signed-off-by: David Seifert <soap@gentoo.org> profiles/base/package.use.mask | 6 ++++++ profiles/package.mask | 7 +++++++ 2 files changed, 13 insertions(+) The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=4fb1bccf8f7d49a5ce14afa2a1b6ff2c7a5da117 commit 4fb1bccf8f7d49a5ce14afa2a1b6ff2c7a5da117 Author: David Seifert <soap@gentoo.org> AuthorDate: 2022-03-20 17:32:08 +0000 Commit: David Seifert <soap@gentoo.org> CommitDate: 2022-03-20 17:32:08 +0000 dev-util/nvidia-cuda-toolkit: drop 10.2.89-r4 Closes: https://bugs.gentoo.org/749903 Bug: https://bugs.gentoo.org/760708 Signed-off-by: David Seifert <soap@gentoo.org> dev-util/nvidia-cuda-toolkit/Manifest | 1 - dev-util/nvidia-cuda-toolkit/metadata.xml | 1 - .../nvidia-cuda-toolkit-10.2.89-r4.ebuild | 158 --------------------- profiles/package.mask | 6 - 4 files changed, 166 deletions(-) All done, thanks! |