An update that has two security fixes can now be installed.. # Security update for nvidia-modprobe.cuda, nvidia-open-driver-G06-signed, nvidia-persistenced.cuda Announcement ID: SUSE-SU-2026:0459-1 Release Date: 2026-02-11T23:29:39Z Rating: important References: * bsc#1254801 * bsc#1255858 Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise Micro 5.3 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro for Rancher 5.3 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP4 An update that has two security fixes can now be installed. ## Description: This update for nvidia-modprobe.cuda, nvidia-open-driver-G06-signed, nvidia- persistenced.cuda fixes the following issues: Changes in nvidia-open-driver-G06-signed: * updated CUDA variant to version 580.126.09 * update non-CUDA variant to version 580.126.09 (bsc#1255858) * update non-CUDA variant to version 580.119.02 (bsc#1254801) Changes in nvidia-persistenced.cuda: * update to version 580.126.09 Changes in nvidia-modprobe.cuda: * update to version 580.126.09 ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.4 zypper in -t patch SUSE-2026-459=1 * SUSE Linux Enterprise Micro for Rancher 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2026-459=1 * SUSE Linux Enterprise Micro 5.3 zypper in -t patch SUSE-SLE-Micro-5.3-2026-459=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2026-459=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2026-459=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2026-459=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2026-459=1 * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2026-459=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2026-459=1 ## Package List: * openSUSE Leap 15.4 (aarch64 x86_64) * nvidia-persistenced-debuginfo-580.126.09-150400.9.12.1 * nvidia-modprobe-debuginfo-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-persistenced-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-persistenced-debugsource-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-default-devel-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-debugsource-580.126.09-150400.107.1 * nv-prefer-signed-open-driver-580.126.09-150400.107.1 * nvidia-modprobe-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-cuda-debugsource-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-cuda-default-devel-580.126.09-150400.107.1 * nvidia-modprobe-debugsource-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * openSUSE Leap 15.4 (noarch) * nvidia-open-driver-G06-signed-cuda-check-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-check-580.126.09-150400.107.1 * openSUSE Leap 15.4 (aarch64) * nvidia-open-driver-G06-signed-kmp-64kb-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 *nvidia-open-driver-G06-signed-cuda-64kb-devel-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-64kb-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-64kb-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-kmp-64kb-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-64kb-devel-580.126.09-150400.107.1 * SUSE Linux Enterprise Micro for Rancher 5.3 (aarch64 x86_64) * nvidia-open-driver-G06-signed-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-debugsource-580.126.09-150400.107.1 * nv-prefer-signed-open-driver-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-cuda-debugsource-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * SUSE Linux Enterprise Micro 5.3 (aarch64 x86_64) * nvidia-open-driver-G06-signed-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-debugsource-580.126.09-150400.107.1 * nv-prefer-signed-open-driver-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-cuda-debugsource-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 x86_64) * nvidia-open-driver-G06-signed-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 *nvidia-open-driver-G06-signed-cuda-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-debugsource-580.126.09-150400.107.1 * nv-prefer-signed-open-driver-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-cuda-debugsource-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * SUSE Linux Enterprise Micro 5.4 (aarch64 x86_64) * nvidia-open-driver-G06-signed-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-debugsource-580.126.09-150400.107.1 * nv-prefer-signed-open-driver-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-cuda-debugsource-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * nvidia-persistenced-debuginfo-580.126.09-150400.9.12.1 * nvidia-modprobe-debuginfo-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-persistenced-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-persistenced-debugsource-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-default-devel-580.126.09-150400.107.1 * nv-prefer-signed-open-driver-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-cuda-default-devel-580.126.09-150400.107.1 * nvidia-modprobe-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-cuda-debugsource-580.126.09-150400.107.1 *nvidia-open-driver-G06-signed-debugsource-580.126.09-150400.107.1 * nvidia-modprobe-debugsource-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64) * nvidia-open-driver-G06-signed-kmp-64kb-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-64kb-devel-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-64kb-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-64kb-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-kmp-64kb-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-64kb-devel-580.126.09-150400.107.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * nvidia-persistenced-debuginfo-580.126.09-150400.9.12.1 * nvidia-modprobe-debuginfo-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-persistenced-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-persistenced-debugsource-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-default-devel-580.126.09-150400.107.1 * nv-prefer-signed-open-driver-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-cuda-default-devel-580.126.09-150400.107.1 * nvidia-modprobe-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-cuda-debugsource-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-debugsource-580.126.09-150400.107.1 * nvidia-modprobe-debugsource-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 *nvidia-open-driver-G06-signed-cuda-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64) * nvidia-open-driver-G06-signed-kmp-64kb-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-64kb-devel-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-64kb-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-64kb-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-kmp-64kb-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-64kb-devel-580.126.09-150400.107.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 x86_64) * nvidia-persistenced-debuginfo-580.126.09-150400.9.12.1 * nvidia-modprobe-debuginfo-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-persistenced-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-persistenced-debugsource-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-default-devel-580.126.09-150400.107.1 * nv-prefer-signed-open-driver-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-cuda-default-devel-580.126.09-150400.107.1 * nvidia-modprobe-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-cuda-debugsource-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-debugsource-580.126.09-150400.107.1 * nvidia-modprobe-debugsource-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64) *nvidia-open-driver-G06-signed-kmp-64kb-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-64kb-devel-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-64kb-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-cuda-kmp-64kb-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-kmp-64kb-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-open-driver-G06-signed-64kb-devel-580.126.09-150400.107.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (x86_64) * nvidia-modprobe-debuginfo-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-kmp-default-debuginfo-580.126.09_k5.14.21_150400.24.187-150400.107.1 * nvidia-persistenced-580.126.09-150400.9.12.1 * nvidia-persistenced-debugsource-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-default-devel-580.126.09-150400.107.1 * nvidia-open-driver-G06-signed-debugsource-580.126.09-150400.107.1 * nvidia-modprobe-580.126.09-150400.9.12.1 * nvidia-persistenced-debuginfo-580.126.09-150400.9.12.1 * nvidia-modprobe-debugsource-580.126.09-150400.9.12.1 * nvidia-open-driver-G06-signed-kmp-default-580.126.09_k5.14.21_150400.24.187-150400.107.1 ## References: * https://bugzilla.suse.com/show_bug.cgi?id=1254801 * https://bugzilla.suse.com/show_bug.cgi?id=1255858 . Update for nvidia-drivers on openSUSE addresses important security flaws, enhancing system security for users.. SUSE Update, important security patch, NVIDIA driver security, Linux driver update, openSUSE patch. . Severity: Important. LinuxSecurity.com Team
* bsc#1222972 * bsc#1223356 * bsc#1223454 * bsc#1227417 * bsc#1227419 . # Security update for nvidia-open-driver-G06-signed Announcement ID: SUSE-SU-2025:20108-1 Release Date: 2025-02-03T09:19:19Z Rating: important References: * bsc#1222972 * bsc#1223356 * bsc#1223454 * bsc#1227417 * bsc#1227419 * bsc#1227575 * bsc#1229716 * bsc#1230368 * bsc#1230779 * bsc#1232057 * bsc#1233332 * bsc#1233673 Cross-References: * CVE-2024-0090 * CVE-2024-0091 * CVE-2024-0092 CVSS scores: * CVE-2024-0090 ( SUSE ): 6.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H * CVE-2024-0090 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-0091 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-0091 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-0092 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-0092 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H Affected Products: * SUSE Linux Micro 6.0 An update that solves three vulnerabilities and has nine fixes can now be installed. ## Description: This update for nvidia-open-driver-G06-signed fixes the following issues: * Make sure the correct FW package is installed on non-CUDA. * only obsolete 555 CUDA driver/firmware packages * For CUDA: update version to 565.57.01 * Add 'dummy' firmware package on SLE to work around update issues. On SLE, the firmware is installed directly from an NVIDIA-hosted repo. * Improve handling of conflicts between different flavors (gfx vs. CUDA) (bsc#1233332). * Update to 550.135 (bsc#1233673) * Update to 550.127.05 (bsc#1232057) * Fixed a bug which could cause applications using GBM to crash when running with nvidia-drm.modeset=0. * cuda-flavor provide also nvidia-open-driver-G06-kmp-$flavor = %version to workaround broken cuda-drivers * For CUDA update version to 560.35.03 * nv-prefer-signed-open-driver: * added specicic versions ofcuda-drivers/cuda-drivers-xxx as preconditions for requiring specific version of nvidia-compute-G06 * nv-prefer-signed-open-driver: * no longer require a specific version of nvidia-open-driver-G06-signed-cuda- kmp, so it can select the correct open driver KMP matching the cuda-runtime version * cuda-flavor: * added nvidia-compute-G06 = %version to preconditions for requiring kernel- firmware-nvidia-gspx-G06, since nvidia-compute-utils-G06 does not have a version-specific requires on nvidia-compute-G06 * cuda-flavor: * require kernel-firmware-nvidia-gspx-G06 instead of kernel-firmware-nvidia- gspx-G06-cuda (which provides also kernel-firmware-nvidia-gspx-G06) * trigger removal of driver modules also on kernel-firmware-nvidia-gspx-G06 * no longer hard-require kernel firmware package, but install it automatically once nvidia-compute-utils-G06 gets installed * trigger removal of driver modules with non-existing or wrong firmware when (new) firmware gets installed * Update to 550.120 (bsc#1230779) * Fixed a bug that could cause kernel crashes upon attempting KMS operations through DRM when nvidia_drm was loaded with modeset=0. * CUDA build: removed entries from pci_ids-555.42.06 since this is doing more harm than benefit (bsc#1230368) * For CUDA (preamble file): * added: Provides: nvidia-open-driver-G06-signed-cuda-kmp-$flavor = %version which is needed for 'zypper install = ' * added: Provides/Conflicts: nvidia-open-driver-G06-signed-kmp-$flavor = %version useful for containers * reverted CUDA update version to 560.x.y due to changes in CUDA repository with CUDA 12.6/560.x.y drivers * For CUDA update version to 560.35.03 * Update to 550.107.02 (bsc#1229716) * For CUDA update version to 560.28.03 * Update to 550.100 (bsc#1227575) * Fixed a bug that caused OpenGL triple buffering to behave like double buffering. * To avoid issues with missing dependencies when no CUDA repo is present make thedependecy to nvidia-compute-G06 conditional. * CUDA is not available for Tumbleweed, exclude the build of the cuda flavor. * preamble: let the -cuda flavor KMP require the -cuda flavor firmware * Add a second flavor for building the kernel module versions used by CUDA. The kmp targetting CUDA contains '-cuda' in its name to track its versions separately from the graphics kmp. (bsc#1227417) * Provide the meta package nv-prefer-signed-open-driver to make sure the latest available SUSE-build open driver is installed - independent of the latest available open driver version in he CUDA repository. Rationale: The package cuda-runtime provides the link between CUDA and the kernel driver version through a Requires: cuda-drivers > = %version This implies that a CUDA version will run withany kernel driver version equal or higher than a base version. nvidia-compute-G06 provides the glue layer between CUDA and a specific version of he kernel driver both by providing a set of base libraries and by requiring a specific kernel version. 'cuda-drivers' (provided by nvidia-compute-utils-G06) requires an unversioned nvidia- compute-G06. With this, the resolver will install the latest available and applicable nvidia-compute-G06. nv-prefer-signed-open-driver then represents the latest available open driver version and restricts the nvidia- compute-G06 version to it. (bsc#1227419) * Security Update 550.90.07 (bsc#1223356) [CVE-2024-0090, CVE-2024-0091, CVE-2024-0092] * Update to 550.78 (bsc#1223454) * Update to 550.76 (bsc#1222972) * Update to 550.67 ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.0 zypper in -t patch SUSE-SLE-Micro-6.0-174=1 ## Package List: * SUSE Linux Micro 6.0 (aarch64 x86_64) * nvidia-open-driver-G06-signed-debugsource-550.142-1.1 * nvidia-open-driver-G06-signed-kmp-default-550.142_k6.4.0_20-1.1 * nvidia-open-driver-G06-signed-kmp-default-debuginfo-550.142_k6.4.0_20-1.1 ## References: * https://www.suse.com/security/cve/CVE-2024-0090.html * https://www.suse.com/security/cve/CVE-2024-0091.html * https://www.suse.com/security/cve/CVE-2024-0092.html * https://bugzilla.suse.com/show_bug.cgi?id=1222972 * https://bugzilla.suse.com/show_bug.cgi?id=1223356 * https://bugzilla.suse.com/show_bug.cgi?id=1223454 * https://bugzilla.suse.com/show_bug.cgi?id=1227417 * https://bugzilla.suse.com/show_bug.cgi?id=1227419 * https://bugzilla.suse.com/show_bug.cgi?id=1227575 * https://bugzilla.suse.com/show_bug.cgi?id=1229716 * https://bugzilla.suse.com/show_bug.cgi?id=1230368 * https://bugzilla.suse.com/show_bug.cgi?id=1230779 * https://bugzilla.suse.com/show_bug.cgi?id=1232057 * https://bugzilla.suse.com/show_bug.cgi?id=1233332 * https://bugzilla.suse.com/show_bug.cgi?id=1233673 . This notification delivers an essential enhancement for the NVIDIA open driver on SUSE Linux Micro 6.0, addressing multiple concerns.. nvidia open driver, SUSE update, Linux driver security, driver vulnerabilities. . Severity: Important. LinuxSecurity.com Team
* bsc#1235461 * bsc#1235871 * bsc#1236191 * bsc#1236658 * bsc#1236746 . # Security update for nvidia-open-driver-G06-signed Announcement ID: SUSE-SU-2025:20319-1 Release Date: May 15, 2025, 3:54 p.m. Rating: important References: * bsc#1235461 * bsc#1235871 * bsc#1236191 * bsc#1236658 * bsc#1236746 * bsc#1237308 * bsc#1237585 * bsc#1239139 * bsc#1239653 * bsc#1241231 * jsc#PED-2658 * jsc#PED-7117 Cross-References: * CVE-2024-0131 * CVE-2024-0147 * CVE-2024-0149 * CVE-2024-0150 * CVE-2024-53869 CVSS scores: * CVE-2024-0131 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H * CVE-2024-0131 ( NVD ): 4.4 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H * CVE-2024-0147 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-0147 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-0149 ( SUSE ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N * CVE-2024-0149 ( NVD ): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N * CVE-2024-0150 ( SUSE ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H * CVE-2024-0150 ( NVD ): 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H * CVE-2024-53869 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-53869 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Affected Products: * SUSE Linux Micro 6.0 An update that solves five vulnerabilities, contains two features and has five fixes can now be installed. ## Description: This update for nvidia-open-driver-G06-signed fixes the following issues: Update CUDA variant to 570.133.20 Update non-CUDA variant to 570.144 (bsc#1241231) Update non-CUDA variant to 570.133.07 (bsc#1239653) * removed obsolete kernel-firmware-nvidia-gspx-G06-cuda; firmware has moved to nvidia-common-G06 and kernel-firmware-nvidia-gspx-G06 is no longer available either (bsc#1239139) Update CUDA variant to 570.124.06 Update non-CUDA variant to 570.124.04 (bsc#1237585) Update non-CUDA variant to570.124.02 (bsc#1237585) In the module install path revert the order of the 'updates' subdirectory and the package name & version. This satisfies the kmp dependency checker (bsc#1237308). update non-CUDA variant to 570.86.16 (bsc#1236658) Update to 565.77 * non-CUDA variant: * get rid of modprobe.d and dracut.d files and udev magic; instead require nvidia-common-G06 * Supplements: switch to really supported devices; not only the initially supported ones without graphical output update non-CUDA and CUDA variant to 570.86.15 * preamble: let -cuda KMP conflict with no-cuda variants < 550.135 (bsc#1236191) Update to 550.144.03 (bsc#1235461, bsc#1235871) * fixes CVE-2024-0131, CVE-2024-0147, CVE-2024-0149, CVE-2024-0150, CVE-2024-53869 ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.0 zypper in -t patch SUSE-SLE-Micro-6.0-kernel-21=1 ## Package List: * SUSE Linux Micro 6.0 (aarch64 x86_64) * nvidia-open-driver-G06-signed-cuda-kmp-default-570.133.20_k6.4.0_28-1.1 * nvidia-open-driver-G06-signed-debugsource-570.144-1.1 * nvidia-open-driver-G06-signed-cuda-debugsource-570.133.20-1.1 * nvidia-open-driver-G06-signed-kmp-default-570.144_k6.4.0_28-1.1 * nvidia-open-driver-G06-signed-kmp-default-debuginfo-570.144_k6.4.0_28-1.1 * nvidia-open-driver-G06-signed-cuda-kmp-default-debuginfo-570.133.20_k6.4.0_28-1.1 ## References: * https://www.suse.com/security/cve/CVE-2024-0131.html * https://www.suse.com/security/cve/CVE-2024-0147.html * https://www.suse.com/security/cve/CVE-2024-0149.html * https://www.suse.com/security/cve/CVE-2024-0150.html * https://www.suse.com/security/cve/CVE-2024-53869.html * https://bugzilla.suse.com/show_bug.cgi?id=1235461 * https://bugzilla.suse.com/show_bug.cgi?id=1235871 * https://bugzilla.suse.com/show_bug.cgi?id=1236191 *https://bugzilla.suse.com/show_bug.cgi?id=1236658 * https://bugzilla.suse.com/show_bug.cgi?id=1236746 * https://bugzilla.suse.com/show_bug.cgi?id=1237308 * https://bugzilla.suse.com/show_bug.cgi?id=1237585 * https://bugzilla.suse.com/show_bug.cgi?id=1239139 * https://bugzilla.suse.com/show_bug.cgi?id=1239653 * https://bugzilla.suse.com/show_bug.cgi?id=1241231 * * . Essential patch for nvidia-open-driver-G06 addresses vulnerabilities within SUSE Linux Micro 6.0, enhancing system security.. nvidia driver update, SUSE security patch, Linux Micro update, driver vulnerabilities. . Severity: Important. LinuxSecurity.com Team
Multiple vulnerabilities have been fixed in the OpenRazer drivers for devices from Razer, a company selling hardware mainly targeted at gamers. CVE-2022-23467 . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4136-1
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-1281 http://linux.oracle.com/errata/ELSA-2025-1281.html The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: x86_64: bpftool-3.10.0-1160.119.1.0.6.el7.x86_64.rpm kernel-3.10.0-1160.119.1.0.6.el7.x86_64.rpm kernel-abi-whitelists-3.10.0-1160.119.1.0.6.el7.noarch.rpm kernel-debug-3.10.0-1160.119.1.0.6.el7.x86_64.rpm kernel-debug-devel-3.10.0-1160.119.1.0.6.el7.x86_64.rpm kernel-devel-3.10.0-1160.119.1.0.6.el7.x86_64.rpm kernel-doc-3.10.0-1160.119.1.0.6.el7.noarch.rpm kernel-headers-3.10.0-1160.119.1.0.6.el7.x86_64.rpm kernel-tools-3.10.0-1160.119.1.0.6.el7.x86_64.rpm kernel-tools-libs-3.10.0-1160.119.1.0.6.el7.x86_64.rpm kernel-tools-libs-devel-3.10.0-1160.119.1.0.6.el7.x86_64.rpm perf-3.10.0-1160.119.1.0.6.el7.x86_64.rpm python-perf-3.10.0-1160.119.1.0.6.el7.x86_64.rpm SRPMS: http://oss.oracle.com/ol7/SRPMS-updates//kernel-3.10.0-1160.119.1.0.6.el7.src.rpm Related CVEs: CVE-2024-53104 Description of changes: [3.10.0-1160.119.1.0.6.el7.OL7] - media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format (Benoit Sevens) {CVE-2024-53104} [Orabug: 37584712] _______________________________________________ El-errata mailing list
FFmpeg 6.0 upgrade. ---- update to 111.0.5563.64. Fixes the following security issues: CVE-2023-0927 CVE-2023-0928 CVE-2023-0929 CVE-2023-0930 CVE-2023-0931 CVE-2023-0932 CVE-2023-0933 CVE-2023-0941 CVE-2023-1213 CVE-2023-1214 CVE-2023-1215 CVE-2023-1216 CVE-2023-1217 CVE-2023-1218 CVE-2023-1219 CVE-2023-1220 CVE-2023-1221 CVE-2023-1222 CVE-2023-1223. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-a5e10b188a 2023-03-14 00:16:44.047436 --------------------------------------------------------------------------------Name : indi-3rdparty-drivers Product : Fedora 38 Version : 2.0.0 Release : 2.fc38 URL : Summary : INDI 3rdparty drivers Description : This is a metapackage for installing all INDI 3rdparty drivers at once. You probably don't want to install everything, but just pick the drivers you need from the appropriate subpackage. We currently ship the following drivers: - indi-3rdparty-aagcloudwatcher-ng - indi-3rdparty-aok - indi-3rdparty-apogee - indi-3rdparty-astrolink4 - indi-3rdparty-astromechfoc - indi-3rdparty-avalon - indi-3rdparty-beefocus - indi-3rdparty-bresserexos2 - indi-3rdparty-celestronaux - indi-3rdparty-dreamfocuser - indi-3rdparty-eqmod - indi-3rdparty-fli - indi-3rdparty-gphoto - indi-3rdparty-gpsd - indi-3rdparty-gpsnmea - indi-3rdparty-armadillo-platypus - indi-3rdparty-maxdome - indi-3rdparty-mgen - indi-3rdparty-nexdome - indi-3rdparty-nightscape - indi-3rdparty-orionssg3 - indi-3rdparty-rtklib - indi-3rdparty-shelyak - indi-3rdparty-spectracyber - indi-3rdparty-starbook - indi-3rdparty-starbook-ten - indi-3rdparty-sx - indi-3rdparty-talon6 - indi-3rdparty-webcam - indi-3rdparty-weewx-json --------------------------------------------------------------------------------Update Information: FFmpeg 6.0 upgrade. ---- update to 111.0.5563.64. Fixes the following security issues: CVE-2023-0927 CVE-2023-0928 CVE-2023-0929CVE-2023-0930 CVE-2023-0931 CVE-2023-0932 CVE-2023-0933 CVE-2023-0941 CVE-2023-1213 CVE-2023-1214 CVE-2023-1215 CVE-2023-1216 CVE-2023-1217 CVE-2023-1218 CVE-2023-1219 CVE-2023-1220 CVE-2023-1221 CVE-2023-1222 CVE-2023-1223 CVE-2023-1224 CVE-2023-1225 CVE-2023-1226 CVE-2023-1227 --------------------------------------------------------------------------------ChangeLog: * Sun Mar 12 2023 Neal Gompa - 2.0.0-2 - Rebuild for ffmpeg 6.0 * Tue Feb 14 2023 Mattia Verga - 2.0.0-1 - Update to 2.0.0 (fedora#2166419) - Update license tags to SPDX identifiers - Enable nearly every driver which can be built from sources only --------------------------------------------------------------------------------References: [ 1 ] Bug #1944122 - notcurses-2.3.17 is available https://bugzilla.redhat.com/show_bug.cgi?id=1944122 [ 2 ] Bug #2022640 - notcurses-2.4.9 is available https://bugzilla.redhat.com/show_bug.cgi?id=2022640 [ 3 ] Bug #2028587 - notcurses-3.0.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=2028587 [ 4 ] Bug #2045133 - notcurses: FTBFS in Fedora rawhide/f36 https://bugzilla.redhat.com/show_bug.cgi?id=2045133 [ 5 ] Bug #2053373 - notcurses-3.0.6 is available https://bugzilla.redhat.com/show_bug.cgi?id=2053373 [ 6 ] Bug #2172934 - CVE-2023-0927 CVE-2023-0928 CVE-2023-0929 CVE-2023-0930 CVE-2023-0931 CVE-2023-0932 CVE-2023-0933 CVE-2023-0941 chromium: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2172934 [ 7 ] Bug #2173846 - ffmpeg-6.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2173846 [ 8 ] Bug #2174875 - k3b-22.12.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=2174875 [ 9 ] Bug #2176135 - mlt-7.14.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2176135 [ 10 ] Bug #2176519 - CVE-2023-1213 CVE-2023-1214 CVE-2023-1215 CVE-2023-1216 CVE-2023-1217 CVE-2023-1218 CVE-2023-1219 CVE-2023-1220 CVE-2023-1221 CVE-2023-1222CVE-2023-1223 CVE-2023-1224 CVE-2023-1225 CVE-2023-1226 CVE-2023-1227 ... chromium: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2176519 [ 11 ] Bug #2176520 - CVE-2023-1213 CVE-2023-1214 CVE-2023-1215 CVE-2023-1216 CVE-2023-1217 CVE-2023-1218 CVE-2023-1219 CVE-2023-1220 CVE-2023-1221 CVE-2023-1222 CVE-2023-1223 CVE-2023-1224 CVE-2023-1225 CVE-2023-1226 CVE-2023-1227 ... chromium: various flaws [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2176520 [ 12 ] Bug #2177300 - retroarch-1.15.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2177300 [ 13 ] Bug #2177550 - nv-codec-headers-12.0.16.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2177550 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-a5e10b188a' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Rebuild for CVE-2022-27191. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-3a63897745 2022-04-28 05:50:06.248389 --------------------------------------------------------------------------------Name : golang-mongodb-mongo-driver Product : Fedora 35 Version : 1.4.5 Release : 5.fc35 URL : https://github.com/mongodb/mongo-go-driver Summary : Go driver for MongoDB Description : The Go driver for MongoDB. --------------------------------------------------------------------------------Update Information: Rebuild for CVE-2022-27191 --------------------------------------------------------------------------------ChangeLog: * Sat Apr 16 2022 Fabio Alessandro Locati - 1.4.5-5 - Rebuilt for CVE-2022-27191 * Thu Jan 20 2022 Fedora Release Engineering - 1.4.5-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #2074262 - CVE-2022-27191 golang-x-crypto: golang: crash in a golang.org/x/crypto/ssh server [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2074262 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-3a63897745' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Several security issues were fixed in NVIDIA graphics drivers.. =========================================================================Ubuntu Security Notice USN-4935-1 May 04, 2021 nvidia-graphics-drivers-390, nvidia-graphics-drivers-418-server, nvidia-graphics-drivers-450, nvidia-graphics-drivers-450-server, nvidia-graphics-drivers-460, nvidia-graphics-drivers-460-server vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 21.04 - Ubuntu 20.10 - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: Several security issues were fixed in NVIDIA graphics drivers. Software Description: - nvidia-graphics-drivers-390: NVIDIA binary X.Org driver - nvidia-graphics-drivers-418-server: NVIDIA Server Driver - nvidia-graphics-drivers-450: NVIDIA binary X.Org driver - nvidia-graphics-drivers-450-server: NVIDIA Server Driver - nvidia-graphics-drivers-460: NVIDIA binary X.Org driver - nvidia-graphics-drivers-460-server: NVIDIA Server Driver Details: It was discovered that the NVIDIA GPU display driver for the Linux kernel incorrectly performed access control. A local attacker could use this issue to cause a denial of service, expose sensitive information, or escalate privileges. (CVE-2021-1076) It was discovered that the NVIDIA GPU display driver for the Linux kernel incorrectly performed reference counting. A local attacker could use this issue to cause a denial of service. (CVE-2021-1077) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 21.04: xserver-xorg-video-nvidia-418-server 418.197.02-0ubuntu1 xserver-xorg-video-nvidia-450 450.119.03-0ubuntu1 xserver-xorg-video-nvidia-450-server 450.119.03-0ubuntu1 xserver-xorg-video-nvidia-460 460.73.01-0ubuntu1 xserver-xorg-video-nvidia-460-server 460.73.01-0ubuntu1 Ubuntu 20.10: xserver-xorg-video-nvidia-390 390.143-0ubuntu0.20.10.1 xserver-xorg-video-nvidia-418-server 418.197.02-0ubuntu0.20.10.1 xserver-xorg-video-nvidia-450 450.119.03-0ubuntu0.20.10.1 xserver-xorg-video-nvidia-450-server 450.119.03-0ubuntu0.20.10.1 xserver-xorg-video-nvidia-460 460.73.01-0ubuntu0.20.10.1 xserver-xorg-video-nvidia-460-server 460.73.01-0ubuntu0.20.10.1 Ubuntu 20.04 LTS: xserver-xorg-video-nvidia-390 390.143-0ubuntu0.20.04.1 xserver-xorg-video-nvidia-418-server 418.197.02-0ubuntu0.20.04.1 xserver-xorg-video-nvidia-450 450.119.03-0ubuntu0.20.04.1 xserver-xorg-video-nvidia-450-server 450.119.03-0ubuntu0.20.04.1 xserver-xorg-video-nvidia-460 460.73.01-0ubuntu0.20.04.1 xserver-xorg-video-nvidia-460-server 460.73.01-0ubuntu0.20.04.1 Ubuntu 18.04 LTS: xserver-xorg-video-nvidia-390 390.143-0ubuntu0.18.04.1 xserver-xorg-video-nvidia-418-server 418.197.02-0ubuntu0.18.04.1 xserver-xorg-video-nvidia-450 450.119.03-0ubuntu0.18.04.1 xserver-xorg-video-nvidia-450-server 450.119.03-0ubuntu0.18.04.1 xserver-xorg-video-nvidia-460 460.73.01-0ubuntu0.18.04.1 xserver-xorg-video-nvidia-460-server 460.73.01-0ubuntu0.18.04.1 This update uses a new upstream release, which includes additional bug fixes. After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4935-1 CVE-2021-1076, CVE-2021-1077 Package Information: https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-390/390.143-0ubuntu1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-418-server/418.197.02-0ubuntu1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-450/450.119.03-0ubuntu1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-450-server/450.119.03-0ubuntu1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-460/460.73.01-0ubuntu1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-460-server/460.73.01-0ubuntu1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-390/390.143-0ubuntu0.20.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-418-server/418.197.02-0ubuntu0.20.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-450/450.119.03-0ubuntu0.20.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-450-server/450.119.03-0ubuntu0.20.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-460/460.73.01-0ubuntu0.20.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-460-server/460.73.01-0ubuntu0.20.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-390/390.143-0ubuntu0.20.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-418-server/418.197.02-0ubuntu0.20.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-450/450.119.03-0ubuntu0.20.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-450-server/450.119.03-0ubuntu0.20.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-460/460.73.01-0ubuntu0.20.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-460-server/460.73.01-0ubuntu0.20.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-390/390.143-0ubuntu0.18.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-418-server/418.197.02-0ubuntu0.18.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-450/450.119.03-0ubuntu0.18.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-450-server/450.119.03-0ubuntu0.18.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-460/460.73.01-0ubuntu0.18.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-460-server/460.73.01-0ubuntu0.18.04.1 . Security vulnerabilities in NVIDIA graphics drivers for Ubuntu have been addressed. Update today for better safeguarding.. NVIDIA Driver Security, Ubuntu Security Update, Access Control Fix. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.