Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 1 articles for you...
91

Gentoo: GLSA-202412-20 High: NVIDIA Drivers Privilege Escalation

Multiple vulnerabilities have been discovered in NVIDIA Drivers, the worst of which could result in privilege escalation.. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 202412-20 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: High Title: NVIDIA Drivers: Privilege Escalation Date: December 14, 2024 Bugs: #942031 ID: 202412-20 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======== Multiple vulnerabilities have been discovered in NVIDIA Drivers, the worst of which could result in privilege escalation. Background ========== NVIDIA Drivers are NVIDIA's accelerated graphics driver. Affected packages ================= Package Vulnerable Unaffected -------------------------- ------------ ------------- x11-drivers/nvidia-drivers < 535.216.01 > = 535.216.01 Description =========== A vulnerability has been discovered in NVIDIA Drivers. Please review the CVE identifiers referenced below for details. Impact ====== Please review the referenced CVE identifier for details. Workaround ========== There is no known workaround at this time. Resolution ========== All NVIDIA Drivers 535 users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =x11-drivers/nvidia-drivers-535.216.01:0/535" All NVIDIA Drivers 550 users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =x11-drivers/nvidia-drivers-550.127.05:0/550" References ========== [ 1 ] CVE-2024-0126 https://nvd.nist.gov/vuln/detail/CVE-2024-0126 Availability ============ This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/202412-20 Concerns? ========= Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users' machines is of utmost importance to us. Any security concerns should be addressed to This email address is being protected from spambots. You need JavaScript enabled to view it. or alternatively, you may file a bug at https://bugs.gentoo.org. License ======= Copyright 2024 Gentoo Foundation, Inc; referenced text belongs to its owner(s). The contents of this document are licensed under the Creative Commons - Attribution / Share Alike license. https://creativecommons.org/licenses/by-sa/2.5 . A critical alert for Gentoo Linux users regarding vulnerabilities in NVIDIA Drivers has been issued. It's essential to update your systems immediately.. NVIDIA Drivers, Gentoo Security, Privilege Escalation, Driver Update, GLSA 202412-20. . LinuxSecurity.com Team

Calendar 2 Dec 14, 2024 Gentoo
197

Debian 9 Stretch DLA-2888-1 Moderate: Nvidia Drivers Denial Of Service

Multiple security vulnerabilities have been discovered in the NVIDIA binary driver and libraries that provide optimized hardware acceleration which may lead to denial of service, information disclosure or data corruption. . -------------------------------------------------------------------------Debian LTS Advisory DLA-2888-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Markus Koschany January 18, 2022 https://wiki.debian.org/LTS -------------------------------------------------------------------------Package : nvidia-graphics-drivers Version : 390.144-1~deb9u1 CVE ID : CVE-2021-1056 CVE-2021-1076 CVE-2021-1093 CVE-2021-1094 CVE-2021-1095 Debian Bug : 987216 987217 987218 987219 987220 987221 987222 991351 991352 991353 991354 991355 991356 991357 979670 979671 979672 979673 979674 979675 Multiple security vulnerabilities have been discovered in the NVIDIA binary driver and libraries that provide optimized hardware acceleration which may lead to denial of service, information disclosure or data corruption. For Debian 9 stretch, these problems have been fixed in version 390.144-1~deb9u1. We recommend that you upgrade your nvidia-graphics-drivers packages. For the detailed security status of nvidia-graphics-drivers please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/nvidia-graphics-drivers Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Various vulnerabilities in NVIDIA drivers addressed. Update suggested for Debian LTS users. Maintain security and stay updated.. Nvidia Graphics Drivers Update, Debian LTS Security, Driver Vulnerabilities. . LinuxSecurity.com Team

Calendar 2 Jan 18, 2022 Debian LTS
172

Ubuntu 20.10 Moderate: NVIDIA Drivers Denial Of Service Risk

Several security issues were fixed in NVIDIA graphics drivers.. =========================================================================Ubuntu Security Notice USN-4689-1 January 11, 2021 nvidia-graphics-drivers-390, nvidia-graphics-drivers-450, nvidia-graphics-drivers-460 vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.10 - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: Several security issues were fixed in NVIDIA graphics drivers. Software Description: - nvidia-graphics-drivers-390: NVIDIA binary X.Org driver - nvidia-graphics-drivers-450: NVIDIA binary X.Org driver - nvidia-graphics-drivers-460: NVIDIA binary X.Org driver Details: It was discovered that the NVIDIA GPU display driver for the Linux kernel contained a vulnerability that allowed user-mode clients to access legacy privileged APIs. A local attacker could use this to cause a denial of service or escalate privileges. (CVE-2021-1052) It was discovered that the NVIDIA GPU display driver for the Linux kernel did not properly validate a pointer received from userspace in some situations. A local attacker could use this to cause a denial of service. (CVE-2021-1053) Xinyuan Lyu discovered that the NVIDIA GPU display driver for the Linux kernel did not properly restrict device-level GPU isolation. A local attacker could use this to cause a denial of service or possibly expose sensitive information. (CVE-2021-1056) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.10: xserver-xorg-video-nvidia-390 390.141-0ubuntu0.20.10.1 xserver-xorg-video-nvidia-440 450.102.04-0ubuntu0.20.10.1 xserver-xorg-video-nvidia-450 450.102.04-0ubuntu0.20.10.1 xserver-xorg-video-nvidia-455 460.32.03-0ubuntu0.20.10.1 xserver-xorg-video-nvidia-460 460.32.03-0ubuntu0.20.10.1 Ubuntu 20.04 LTS: xserver-xorg-video-nvidia-390 390.141-0ubuntu0.20.04.1 xserver-xorg-video-nvidia-440 450.102.04-0ubuntu0.20.04.1 xserver-xorg-video-nvidia-450 450.102.04-0ubuntu0.20.04.1 xserver-xorg-video-nvidia-455 460.32.03-0ubuntu0.20.04.1 xserver-xorg-video-nvidia-460 460.32.03-0ubuntu0.20.04.1 Ubuntu 18.04 LTS: xserver-xorg-video-nvidia-390 390.141-0ubuntu0.18.04.1 xserver-xorg-video-nvidia-440 450.102.04-0ubuntu0.18.04.1 xserver-xorg-video-nvidia-450 450.102.04-0ubuntu0.18.04.1 xserver-xorg-video-nvidia-455 460.32.03-0ubuntu0.18.04.1 xserver-xorg-video-nvidia-460 460.32.03-0ubuntu0.18.04.1 This update uses a new upstream release, which includes additional bug fixes. After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4689-1 CVE-2021-1052, CVE-2021-1053, CVE-2021-1056 Package Information: https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-390/390.141-0ubuntu0.20.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-450/450.102.04-0ubuntu0.20.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-460/460.32.03-0ubuntu0.20.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-390/390.141-0ubuntu0.20.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-450/450.102.04-0ubuntu0.20.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-460/460.32.03-0ubuntu0.20.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-390/390.141-0ubuntu0.18.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-450/450.102.04-0ubuntu0.18.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-460/460.32.03-0ubuntu0.18.04.1 . Ubuntu Security Advisory details updates for NVIDIA GPU security flaws aimed at strengthening protection and averting compromise.. NVIDIA Drivers Vulnerabilities, Ubuntu Security Flaws, Driver Update Instructions. . LinuxSecurity.com Team

Calendar 2 Jan 11, 2021 Ubuntu
172

Ubuntu 20.04 LTS USN-4404-1 Critical: NVIDIA Driver Exploits

Several security issues were fixed in NVIDIA graphics drivers.. =========================================================================Ubuntu Security Notice USN-4404-1 June 25, 2020 nvidia-graphics-drivers-390, nvidia-graphics-drivers-440 vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 19.10 - Ubuntu 18.04 LTS Summary: Several security issues were fixed in NVIDIA graphics drivers. Software Description: - nvidia-graphics-drivers-390: NVIDIA binary X.Org driver - nvidia-graphics-drivers-440: NVIDIA binary X.Org driver Details: Thomas E. Carroll discovered that the NVIDIA Cuda grpahics driver did not properly perform access control when performing IPC. An attacker could use this to cause a denial of service or possibly execute arbitrary code. (CVE-2020-5963) It was discovered that the UVM driver in the NVIDIA graphics driver contained a race condition. A local attacker could use this to cause a denial of service. (CVE-2020-5967) It was discovered that the NVIDIA virtual GPU guest drivers contained an unspecified vulnerability that could potentially lead to privileged operation execution. An attacker could use this to cause a denial of service. (CVE-2020-5973) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS: xserver-xorg-video-nvidia-390 390.138-0ubuntu0.20.04.1 xserver-xorg-video-nvidia-440 440.100-0ubuntu0.20.04.1 Ubuntu 19.10: xserver-xorg-video-nvidia-390 390.138-0ubuntu0.19.10.1 xserver-xorg-video-nvidia-440 440.100-0ubuntu0.19.10.1 Ubuntu 18.04 LTS: xserver-xorg-video-nvidia-390 390.138-0ubuntu0.18.04.1 xserver-xorg-video-nvidia-440 440.100-0ubuntu0.18.04.1 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4404-1 CVE-2020-5963, CVE-2020-5967,CVE-2020-5973 Package Information: https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-390/390.138-0ubuntu0.20.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-440/440.100-0ubuntu0.20.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-390/390.138-0ubuntu0.19.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-440/440.100-0ubuntu0.19.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-390/390.138-0ubuntu0.18.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-440/440.100-0ubuntu0.18.04.1 . Numerous potential threats were resolved in the NVIDIA graphics driver suite for Ubuntu, remediate weaknesses through new package updates.. NVIDIA Drivers Vulnerabilities, Ubuntu Security Notice, Graphics Driver Update. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jun 25, 2020 Critical Ubuntu
172

Ubuntu 16.10: USN-3173-2 Critical: NVIDIA Drivers Denial Of Service

NVIDIA graphics drivers could be made to crash under certain conditions.. =========================================================================Ubuntu Security Notice USN-3173-2 March 21, 2017 nvidia-graphics-drivers-375 vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 16.10 - Ubuntu 16.04 LTS - Ubuntu 14.04 LTS Summary: NVIDIA graphics drivers could be made to crash under certain conditions. Software Description: - nvidia-graphics-drivers-375: NVIDIA binary X.Org driver Details: USN-3173-1 fixed a vulnerability in nvidia-graphics-drivers-304 and nvidia-graphics-drivers-340. This update provides the corresponding update for nvidia-graphics-drivers-375. Original advisory details: It was discovered that the NVIDIA graphics drivers contained a flaw in the kernel mode layer. A local attacker could use this issue to cause a denial of service. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 16.10: nvidia-367 375.39-0ubuntu0.16.10.1 nvidia-375 375.39-0ubuntu0.16.10.1 Ubuntu 16.04 LTS: nvidia-367 375.39-0ubuntu0.16.04.1 nvidia-375 375.39-0ubuntu0.16.04.1 Ubuntu 14.04 LTS: nvidia-367 375.39-0ubuntu0.14.04.1 nvidia-375 375.39-0ubuntu0.14.04.1 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-3173-2 https://ubuntu.com/security/notices/USN-3173-1 CVE-2016-8826 Package Information: https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-375/375.39-0ubuntu0.16.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-375/375.39-0ubuntu0.16.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-375/375.39-0ubuntu0.14.04.1 . The most recentadvisory on nvidia-graphics-drivers-375 vulnerabilities for Ubuntu has been issued, targeting crash-related issues to boost stability and performance.. ubuntu Security, NVIDIA Drivers, Denial Of Service, Driver Updates. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 21, 2017 Critical Ubuntu
172

Ubuntu 16.04 LTS: USN-3173-1 Critical: NVIDIA Drivers Denial Of Service

NVIDIA graphics drivers could be made to crash under certain conditions.. =========================================================================Ubuntu Security Notice USN-3173-1 January 18, 2017 nvidia-graphics-drivers-304 and nvidia-graphics-drivers-340 vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 16.10 - Ubuntu 16.04 LTS - Ubuntu 14.04 LTS - Ubuntu 12.04 LTS Summary: NVIDIA graphics drivers could be made to crash under certain conditions. Software Description: - nvidia-graphics-drivers-304: NVIDIA binary X.Org driver - nvidia-graphics-drivers-340: NVIDIA binary X.Org driver Details: It was discovered that the NVIDIA graphics drivers contained a flaw in the kernel mode layer. A local attacker could use this issue to cause a denial of service. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 16.10: nvidia-304 304.134-0ubuntu0.16.10.1 nvidia-304-updates 304.134-0ubuntu0.16.10.1 nvidia-331 340.101-0ubuntu0.16.10.1 nvidia-331-updates 340.101-0ubuntu0.16.10.1 nvidia-340 340.101-0ubuntu0.16.10.1 nvidia-340-updates 340.101-0ubuntu0.16.10.1 nvidia-current 304.134-0ubuntu0.16.10.1 Ubuntu 16.04 LTS: nvidia-304 304.134-0ubuntu0.16.04.1 nvidia-304-updates 304.134-0ubuntu0.16.04.1 nvidia-331 340.101-0ubuntu0.16.04.1 nvidia-331-updates 340.101-0ubuntu0.16.04.1 nvidia-340 340.101-0ubuntu0.16.04.1 nvidia-340-updates 340.101-0ubuntu0.16.04.1 nvidia-current 304.134-0ubuntu0.16.04.1 Ubuntu 14.04 LTS: nvidia-304 304.134-0ubuntu0.14.04.1 nvidia-304-updates 304.134-0ubuntu0.14.04.1 nvidia-331 340.101-0ubuntu0.14.04.1 nvidia-331-updates 340.101-0ubuntu0.14.04.1 nvidia-340 340.101-0ubuntu0.14.04.1 nvidia-340-updates 340.101-0ubuntu0.14.04.1 nvidia-current 304.134-0ubuntu0.14.04.1 Ubuntu 12.04 LTS: nvidia-304 304.134-0ubuntu0.12.04.1 nvidia-304-updates 304.134-0ubuntu0.12.04.1 nvidia-331 340.101-0ubuntu0.12.04.1 nvidia-331-updates 340.101-0ubuntu0.12.04.1 nvidia-340 340.101-0ubuntu0.12.04.1 nvidia-340-updates 340.101-0ubuntu0.12.04.1 nvidia-current 304.134-0ubuntu0.12.04.1 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-3173-1 CVE-2016-8826 Package Information: https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-304/304.134-0ubuntu0.16.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-340/340.101-0ubuntu0.16.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-304/304.134-0ubuntu0.16.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-340/340.101-0ubuntu0.16.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-304/304.134-0ubuntu0.14.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-340/340.101-0ubuntu0.14.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-304/304.134-0ubuntu0.12.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-340/340.101-0ubuntu0.12.04.1 . NVIDIA graphics card users on Ubuntu are facing major instability, causing system crashes during certain tasks. Updated drivers are urgently needed to resolve these issues. nvidia graphics drivers, ubuntu update, denial of service, driver fix, nvidia vulnerabilities. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Jan 18, 2017 Critical Ubuntu
172

Ubuntu 15.10 USN-2814-1 Moderate: NVIDIA Drivers Administrative Issue

NVIDIA graphics drivers could be made to run programs as an administrator.. =========================================================================Ubuntu Security Notice USN-2814-1 November 18, 2015 nvidia-graphics-drivers-304, nvidia-graphics-drivers-304-updates, nvidia-graphics-drivers-340, nvidia-graphics-drivers-340-updates, nvidia-graphics-drivers-352, nvidia-graphics-drivers-352-updates vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 15.10 - Ubuntu 15.04 - Ubuntu 14.04 LTS - Ubuntu 12.04 LTS Summary: NVIDIA graphics drivers could be made to run programs as an administrator. Software Description: - nvidia-graphics-drivers-304: NVIDIA binary X.Org driver - nvidia-graphics-drivers-304-updates: NVIDIA binary X.Org driver - nvidia-graphics-drivers-340: NVIDIA binary X.Org driver - nvidia-graphics-drivers-340-updates: NVIDIA binary X.Org driver - nvidia-graphics-drivers-352: NVIDIA binary X.Org driver - nvidia-graphics-drivers-352-updates: NVIDIA binary X.Org driver Details: It was discovered that the NVIDIA graphics drivers incorrectly sanitized user mode inputs. A local attacker could use this issue to possibly gain root privileges. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 15.10: nvidia-304 304.131-0ubuntu0.15.10.1 nvidia-304-updates 304.131-0ubuntu0.15.10.1 nvidia-331 340.96-0ubuntu0.15.10.1 nvidia-331-updates 340.96-0ubuntu0.15.10.1 nvidia-340 340.96-0ubuntu0.15.10.1 nvidia-340-updates 340.96-0ubuntu0.15.10.1 nvidia-346 352.63-0ubuntu0.15.10.1 nvidia-346-updates 352.63-0ubuntu0.15.10.1 nvidia-352 352.63-0ubuntu0.15.10.1 nvidia-352-updates 352.63-0ubuntu0.15.10.1 Ubuntu 15.04: nvidia-304 304.131-0ubuntu0.15.04.1 nvidia-304-updates 304.131-0ubuntu0.15.04.1 nvidia-331 340.96-0ubuntu0.15.04.1 nvidia-331-updates 340.96-0ubuntu0.15.04.1 nvidia-340 340.96-0ubuntu0.15.04.1 nvidia-340-updates 340.96-0ubuntu0.15.04.1 nvidia-346 352.63-0ubuntu0.15.04.1 nvidia-346-updates 352.63-0ubuntu0.15.04.1 nvidia-352 352.63-0ubuntu0.15.04.1 nvidia-352-updates 352.63-0ubuntu0.15.04.1 Ubuntu 14.04 LTS: nvidia-304 304.131-0ubuntu0.14.04.1 nvidia-304-updates 304.131-0ubuntu0.14.04.1 nvidia-331 340.96-0ubuntu0.14.04.1 nvidia-331-updates 340.96-0ubuntu0.14.04.1 nvidia-340 340.96-0ubuntu0.14.04.1 nvidia-340-updates 340.96-0ubuntu0.14.04.1 nvidia-346 352.63-0ubuntu0.14.04.1 nvidia-346-updates 352.63-0ubuntu0.14.04.1 nvidia-352 352.63-0ubuntu0.14.04.1 nvidia-352-updates 352.63-0ubuntu0.14.04.1 Ubuntu 12.04 LTS: nvidia-304 304.131-0ubuntu0.12.04.1 nvidia-304-updates 304.131-0ubuntu0.12.04.1 nvidia-331-updates 340.96-0ubuntu0.12.04.1 nvidia-340 340.96-0ubuntu0.12.04.1 nvidia-340-updates 340.96-0ubuntu0.12.04.1 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-2814-1 CVE-2015-7869 PackageInformation: https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-304/304.131-0ubuntu0.15.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-304-updates/304.131-0ubuntu0.15.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-340/340.96-0ubuntu0.15.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-340-updates/340.96-0ubuntu0.15.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-352/352.63-0ubuntu0.15.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-352-updates/352.63-0ubuntu0.15.10.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-304/304.131-0ubuntu0.15.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-304-updates/304.131-0ubuntu0.15.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-340/340.96-0ubuntu0.15.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-340-updates/340.96-0ubuntu0.15.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-352/352.63-0ubuntu0.15.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-352-updates/352.63-0ubuntu0.15.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-304/304.131-0ubuntu0.14.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-304-updates/304.131-0ubuntu0.14.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-340/340.96-0ubuntu0.14.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-340-updates/340.96-0ubuntu0.14.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-352/352.63-0ubuntu0.14.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-352-updates/352.63-0ubuntu0.14.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-304/304.131-0ubuntu0.12.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-304-updates/304.131-0ubuntu0.12.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-340/340.96-0ubuntu0.12.04.1 https://launchpad.net/ubuntu/+source/nvidia-graphics-drivers-340-updates/340.96-0ubuntu0.12.04.1 . Recent studies show NVIDIA's Ubuntu graphics drivers may expose systems to risks, allowing local threats to gain root access. Update your drivers to protect your system. NVIDIA Drivers, Root Access, Ubuntu Update. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Nov 18, 2015 Important Ubuntu
91

Gentoo: GLSA-201402-02 High: NVIDIA Drivers Privilege Escalation

A NVIDIA drivers bug allows unprivileged user-mode software to access the GPU inappropriately, allowing for privilege escalation.. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 201402-02 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: High Title: NVIDIA Drivers: Privilege Escalation Date: February 02, 2014 Bugs: #493448 ID: 201402-02 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======= A NVIDIA drivers bug allows unprivileged user-mode software to access the GPU inappropriately, allowing for privilege escalation. Background ========= The NVIDIA drivers provide X11 and GLX support for NVIDIA graphic boards. Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 x11-drivers/nvidia-drivers < 331.20 *> = 304.116 *> = 319.76 > = 331.20 Description ========== The vulnerability is caused due to the driver allowing unprivileged user-mode software to access the GPU. Impact ===== A local attacker could gain escalated privileges. Workaround ========= There is no known workaround at this time. Resolution ========= All NVIDIA Drivers users using the 331 branch should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot -v "> =x11-drivers/nvidia-drivers-331.20" All NVIDIA Drivers users using the 319 branch should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot -v ">=x11-drivers/nvidia-drivers-319.76" All NVIDIA Drivers users using the 304 branch should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot -v "> =x11-drivers/nvidia-drivers-304.116" References ========= [ 1 ] CVE-2013-5986 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2013-5986 [ 2 ] CVE-2013-5987 http://nvd.nist.gov/nvd.cfm?cvename=CVE-2013-5987 Availability =========== This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/201402-02 Concerns? ======== Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users' machines is of utmost importance to us. Any security concerns should be addressed to This email address is being protected from spambots. You need JavaScript enabled to view it. or alternatively, you may file a bug at https://bugs.gentoo.org. License ====== Copyright 2014 Gentoo Foundation, Inc; referenced text belongs to its owner(s). The contents of this document are licensed under the Creative Commons - Attribution / Share Alike license. https://creativecommons.org/licenses/by-sa/2.5/ . A bug in NVIDIA drivers enables local user escalation of privileges. Upgrade now to ensure system security!. NVIDIA Drivers, Gentoo Linux, Privilege Escalation, Driver Update, High Severity. . LinuxSecurity.com Team

Calendar 2 Feb 02, 2014 Gentoo
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here