Your message dated Wed, 12 Jul 2023 15:37:04 +0000
with message-id <e1qjbto-006pp9...@fasolo.debian.org>
and subject line Bug#1039685: fixed in nvidia-graphics-drivers-tesla
525.125.06-1
has caused the Debian Bug report #1039685,
regarding nvidia-graphics-drivers-tesla: CVE-2023-25515, CVE-2023-25516
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)
--
1039685: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1039685
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Source: nvidia-graphics-drivers
Severity: serious
Tags: security upstream
X-Debbugs-Cc: Debian Security Team <t...@security.debian.org>
Control: clone -1 -2 -3 -4 -5 -6 -7 -8 -9
Control: reassign -2 src:nvidia-graphics-drivers-legacy-340xx 340.76-6
Control: retitle -2 nvidia-graphics-drivers-legacy-340xx: CVE-2023-25515,
CVE-2023-25516
Control: tag -2 + wontfix
Control: reassign -3 src:nvidia-graphics-drivers-legacy-390xx 390.48-4
Control: retitle -3 nvidia-graphics-drivers-legacy-390xx: CVE-2023-25515,
CVE-2023-25516
Control: tag -3 + wontfix
Control: reassign -4 src:nvidia-graphics-drivers-tesla-418 418.87.01-1
Control: retitle -4 nvidia-graphics-drivers-tesla-418: CVE-2023-25515,
CVE-2023-25516
Control: tag -4 + wontfix
Control: reassign -5 src:nvidia-graphics-drivers-tesla-450 450.51.05-1
Control: retitle -5 nvidia-graphics-drivers-tesla-450: CVE-2023-25515,
CVE-2023-25516
Control: reassign -6 src:nvidia-graphics-drivers-tesla-460 460.32.03-1
Control: retitle -6 nvidia-graphics-drivers-tesla-460: CVE-2023-25515,
CVE-2023-25516
Control: tag -6 + wontfix
Control: close -6 460.106.00-3
Control: reassign -7 src:nvidia-graphics-drivers-tesla-470 470.57.02-1
Control: retitle -7 nvidia-graphics-drivers-tesla-470: CVE-2023-25515,
CVE-2023-25516
Control: reassign -8 src:nvidia-graphics-drivers-tesla 510.85.02-1
Control: retitle -8 nvidia-graphics-drivers-tesla: CVE-2023-25515,
CVE-2023-25516
Control: found -8 515.48.07-1
Control: found -8 525.60.13-1
Control: reassign -9 src:nvidia-open-gpu-kernel-modules 515.43.04-1
Control: retitle -9 nvidia-open-gpu-kernel-modules: CVE-2023-25515,
CVE-2023-25516
Control: found -9 520.56.06-1
Control: found -9 525.85.12-1
Control: found -9 530.30.02-1
Control: found -1 340.24-1
Control: found -1 343.22-1
Control: found -1 396.18-1
Control: found -1 430.14-1
Control: found -1 455.23.04-1
Control: found -1 465.24.02-1
Control: found -1 495.44-1
Control: found -1 515.48.07-1
Control: found -1 520.56.06-1
Control: found -1 525.53-1
Control: found -1 530.30.02-1
https://nvidia.custhelp.com/app/answers/detail/a_id/5468
CVE-2023-25515 NVIDIA GPU Display Driver for Windows and Linux contains
a vulnerability where unexpected untrusted data is parsed, which may
lead to code execution, denial of service, escalation of privileges,
data tampering, or information disclosure.
CVE-2023-25516 NVIDIA GPU Display Driver for Linux contains a
vulnerability in the kernel mode layer, where an unprivileged user can
cause an integer overflow, which may lead to information disclosure and
denial of service.
Linux Driver Branch CVE IDs Addressed
R535, R525, R470, R450 CVE-2023-25515, CVE-2023-25516
Driver Branch Affected Driver Versions Updated Driver
Version
R535 All driver versions prior to 535.54.03 535.54.03
R525 All driver versions prior to 525.125.06 525.125.06
R470 All driver versions prior to 470.199.02 470.199.02
R450 All driver versions prior to 450.248.02 450.248.02
Andreas
--- End Message ---
--- Begin Message ---
Source: nvidia-graphics-drivers-tesla
Source-Version: 525.125.06-1
Done: Andreas Beckmann <a...@debian.org>
We believe that the bug you reported is fixed in the latest version of
nvidia-graphics-drivers-tesla, which is due to be installed in the Debian FTP
archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to 1039...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Andreas Beckmann <a...@debian.org> (supplier of updated
nvidia-graphics-drivers-tesla package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Wed, 12 Jul 2023 16:56:19 +0200
Source: nvidia-graphics-drivers-tesla
Architecture: source
Version: 525.125.06-1
Distribution: unstable
Urgency: medium
Maintainer: Debian NVIDIA Maintainers <pkg-nvidia-de...@lists.alioth.debian.org>
Changed-By: Andreas Beckmann <a...@debian.org>
Closes: 1039685
Changes:
nvidia-graphics-drivers-tesla (525.125.06-1) unstable; urgency=medium
.
* New upstream production branch release 525.125.06 (2023-05-09).
* Fixed CVE-2023-25515, CVE-2023-25516. (Closes: #1039685)
https://nvidia.custhelp.com/app/answers/detail/a_id/5468
- Fixed a bug which prevented running a Wayland compositor in headless
mode on GPUs without display hardware.
.
[ Andreas Beckmann ]
* Update nv-readme.ids.
Checksums-Sha1:
7885f357a1e7b406c802717ef082dcc47c157550 7765
nvidia-graphics-drivers-tesla_525.125.06-1.dsc
6bd76f6a3d04adacc1d6c9c0408f93264fafc740 414306913
nvidia-graphics-drivers-tesla_525.125.06.orig-amd64.tar.gz
3541811b27dc2a64e74c999650f59bd550a1c5d3 263013641
nvidia-graphics-drivers-tesla_525.125.06.orig-arm64.tar.gz
58f83a9882d50edb0cdf7d8d2b249001f3e1f4c3 97247939
nvidia-graphics-drivers-tesla_525.125.06.orig-ppc64el.tar.gz
fe11ccda488609fdc3aed82efb8e1d6d1b4eb56d 139
nvidia-graphics-drivers-tesla_525.125.06.orig.tar.gz
1fd558d63f004722052d9799ad8c9e5a32a98937 219464
nvidia-graphics-drivers-tesla_525.125.06-1.debian.tar.xz
8a8c68be508cc2de05460c8c97aba71cf38ddac5 5769
nvidia-graphics-drivers-tesla_525.125.06-1_source.buildinfo
Checksums-Sha256:
7bae74b05a6c0b59016113a027cacbdc54bef0dcb16c0ba4c61a12855ae27bea 7765
nvidia-graphics-drivers-tesla_525.125.06-1.dsc
f61c9d13b1f558e2f35951ea102f4adf603f6e42b038bafb600f63b1a6e3c139 414306913
nvidia-graphics-drivers-tesla_525.125.06.orig-amd64.tar.gz
4c01775a25db03251dabe9aeff1c10a40c57d5b7ab93ffa36d434ea6953afd9b 263013641
nvidia-graphics-drivers-tesla_525.125.06.orig-arm64.tar.gz
92b18c79c53baed63c0c367d9d033f6d3093497bd16f1c944c73cd314830ae46 97247939
nvidia-graphics-drivers-tesla_525.125.06.orig-ppc64el.tar.gz
3b3776d083da99c4d5c54085b85dcd25752c69d533b68f493ab4223a7e583391 139
nvidia-graphics-drivers-tesla_525.125.06.orig.tar.gz
bdd98ac2079a18b6d29752fe8c415fec1cb7f78898f685ef3c813a8d3075ecc8 219464
nvidia-graphics-drivers-tesla_525.125.06-1.debian.tar.xz
8f10479c99ca12d54c234db62906f7ad01e4ec395b67e34556c28db37663df96 5769
nvidia-graphics-drivers-tesla_525.125.06-1_source.buildinfo
Files:
2a2f87464f07ca35161c3a2c83b0a4e3 7765 non-free/libs optional
nvidia-graphics-drivers-tesla_525.125.06-1.dsc
fe5caeecfe84388c17217477d069f397 414306913 non-free/libs optional
nvidia-graphics-drivers-tesla_525.125.06.orig-amd64.tar.gz
fcdaf2548a960f25c696a41521c12799 263013641 non-free/libs optional
nvidia-graphics-drivers-tesla_525.125.06.orig-arm64.tar.gz
6896d5c40647abe014a2ea96993bbac2 97247939 non-free/libs optional
nvidia-graphics-drivers-tesla_525.125.06.orig-ppc64el.tar.gz
1a031350ae1fa633ef71bb855c669e47 139 non-free/libs optional
nvidia-graphics-drivers-tesla_525.125.06.orig.tar.gz
95a41284946840a5d3ba959e02ca4793 219464 non-free/libs optional
nvidia-graphics-drivers-tesla_525.125.06-1.debian.tar.xz
bd7f582186d493e7c945f189e3939be4 5769 non-free/libs optional
nvidia-graphics-drivers-tesla_525.125.06-1_source.buildinfo
-----BEGIN PGP SIGNATURE-----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=mDf3
-----END PGP SIGNATURE-----
--- End Message ---