#1004852 nvidia-graphics-drivers-tesla-460: CVE-2022-21813, CVE-2022-21814

#1004852#5
Date:
2022-02-02 10:47:50 UTC
From:
To:
Source: nvidia-graphics-drivers
Severity: serious
Tags: security upstream
Control: clone -1 -2 -3 -4 -5 -6 -7
Control: reassign -2 src:nvidia-graphics-drivers-legacy-340xx 340.76-6
Control: retitle -2 nvidia-graphics-drivers-legacy-340xx: CVE-2022-21813, CVE-2022-21814
Control: tag -2 + wontfix
Control: reassign -3 src:nvidia-graphics-drivers-legacy-390xx 390.48-4
Control: retitle -3 nvidia-graphics-drivers-legacy-390xx: CVE-2022-21813, CVE-2022-21814
Control: reassign -4 src:nvidia-graphics-drivers-tesla-418 418.87.01-1
Control: retitle -4 nvidia-graphics-drivers-tesla-418: CVE-2022-21813, CVE-2022-21814
Control: reassign -5 src:nvidia-graphics-drivers-tesla-450 450.51.05-1
Control: retitle -5 nvidia-graphics-drivers-tesla-450: CVE-2022-21813, CVE-2022-21814
Control: reassign -6 src:nvidia-graphics-drivers-tesla-460 460.32.03-1
Control: retitle -6 nvidia-graphics-drivers-tesla-460: CVE-2022-21813, CVE-2022-21814
Control: reassign -7 src:nvidia-graphics-drivers-tesla-470 470.57.02-1
Control: retitle -7 nvidia-graphics-drivers-tesla-470: CVE-2022-21813, CVE-2022-21814
Control: found -1 340.24-1
Control: found -1 343.22-1
Control: found -1 396.18-1
Control: found -1 430.14-1
Control: found -1 450.51-1
Control: found -1 455.23.04-1
Control: found -1 465.24.02-1
Control: found -1 495.44-1

https://nvidia.custhelp.com/app/answers/detail/a_id/5312

CVE‑2022‑21813 	NVIDIA GPU Display Driver for Linux contains a
vulnerability in the kernel driver, where improper handling of
insufficient permissions or privileges may allow an unprivileged
local user limited write access to protected memory, which can
lead to denial of service.

CVE‑2022‑21814 	NVIDIA GPU Display Driver for Linux contains a
vulnerability in the kernel driver package, where improper
handling of insufficient permissions or privileges may allow an
unprivileged local user limited write access to protected memory,
which can lead to denial of service.

Driver Branch		CVE IDs Addressed
R510, R470		CVE-2022-21813, CVE-2022-21814

Andreas

#1004852#18
Date:
2022-03-16 15:00:47 UTC
From:
To:
We believe that the bug you reported is fixed in the latest version of
nvidia-graphics-drivers-tesla-460, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 1004852@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Andreas Beckmann <anbe@debian.org> (supplier of updated nvidia-graphics-drivers-tesla-460 package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)
Format: 1.8
Date: Wed, 16 Mar 2022 15:24:04 +0100
Source: nvidia-graphics-drivers-tesla-460
Architecture: source
Version: 460.106.00-3
Distribution: unstable
Urgency: medium
Maintainer: Debian NVIDIA Maintainers <pkg-nvidia-devel@lists.alioth.debian.org>
Changed-By: Andreas Beckmann <anbe@debian.org>
Closes: 1004852 1005933
Changes:
 nvidia-graphics-drivers-tesla-460 (460.106.00-3) unstable; urgency=medium
 .
   * The Tesla 460 driver series has been declared as End-of-Life by
     NVIDIA. No further updates fixing security issues, critical bugs, or
     adding support for new Xorg or Linux releases will be issued.
https://docs.nvidia.com/datacenter/tesla/drivers/
 .
   * Turn metapackages into transitional packages to aid switching to
     nvidia-graphics-drivers-tesla-470.  (Closes: #1004852, #1005933)
   * Provide less virtual packages.
   * Remove the Tesla 460 driver from the nvidia alternative.
Checksums-Sha1:
 c0afce206e1a3c89157c90002645c92f83acb8ea 7442 nvidia-graphics-drivers-tesla-460_460.106.00-3.dsc
 13327381c8561b72d3e090b950be11a7b3e191b3 206408 nvidia-graphics-drivers-tesla-460_460.106.00-3.debian.tar.xz
 b57bcc1854d7c3b11d722f50d9fa4982809b8ac1 7957 nvidia-graphics-drivers-tesla-460_460.106.00-3_source.buildinfo
Checksums-Sha256:
 380173cadca0953cea36a0bfc38a5d5e3e9f6177d6210f66b2730cbe23cbee15 7442 nvidia-graphics-drivers-tesla-460_460.106.00-3.dsc
 e283693c463c4e32a61f4bbb86dd6c140f76ff1c3689e0e941a78b004720e3a9 206408 nvidia-graphics-drivers-tesla-460_460.106.00-3.debian.tar.xz
 11d4690ee93ba2bc42a8e485be03696a12ed567ad5f4b1b22ed76164fd9ff391 7957 nvidia-graphics-drivers-tesla-460_460.106.00-3_source.buildinfo
Files:
 e7c4f6e802f1c4297a2480466769797e 7442 non-free/libs optional nvidia-graphics-drivers-tesla-460_460.106.00-3.dsc
 c0e571e2ecb5659aaa21d26205c5ff3c 206408 non-free/libs optional nvidia-graphics-drivers-tesla-460_460.106.00-3.debian.tar.xz
 5287701ae5e30dd21c933ae56e21acc4 7957 non-free/libs optional nvidia-graphics-drivers-tesla-460_460.106.00-3_source.buildinfo
-----BEGIN PGP SIGNATURE-----
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=J/g0
-----END PGP SIGNATURE-----

#1004852#23
Date:
2022-07-02 19:02:07 UTC
From:
To:
We believe that the bug you reported is fixed in the latest version of
nvidia-graphics-drivers-tesla-460, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 1004852@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Andreas Beckmann <anbe@debian.org> (supplier of updated nvidia-graphics-drivers-tesla-460 package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)
Format: 1.8
Date: Sat, 02 Jul 2022 18:09:57 +0200
Source: nvidia-graphics-drivers-tesla-460
Architecture: source
Version: 460.106.00-6~deb11u1
Distribution: bullseye
Urgency: medium
Maintainer: Debian NVIDIA Maintainers <pkg-nvidia-devel@lists.alioth.debian.org>
Changed-By: Andreas Beckmann <anbe@debian.org>
Closes: 996595 999670 1004852 1005406 1005933 1011145
Changes:
 nvidia-graphics-drivers-tesla-460 (460.106.00-6~deb11u1) bullseye; urgency=medium
 .
   * Rebuild for bullseye.
 .
 nvidia-graphics-drivers-tesla-460 (460.106.00-6) unstable; urgency=medium
 .
   * Backport pci/dma, iosys_map, dma_set_coherent_mask, acpi_bus_get_device,
     cc_mkdec and drm_mode_config_has_allow_fb_modifiers changes from
     470.129.06 to fix kernel module build for Linux 5.18.
   * Minor packaging sync and cleanup (470.129.06-6).
   * Update lintian overrides.
 .
 nvidia-graphics-drivers-tesla-460 (460.106.00-5) unstable; urgency=medium
 .
   * Backport linker scripts changes from 510.60.02.
   * Refresh patches.
   * Bump Standards-Version to 4.6.1. No changes needed.
 .
 nvidia-graphics-drivers-tesla-460 (460.106.00-4) unstable; urgency=medium
 .
   * Update 0003-fix-conftest-includes.patch to fix kernel module build for
     ppc64el.
   * Backport mt_device_gre changes from 510.39.01 to fix kernel module build
     for arm64.
   * Refresh patches.
 .
 nvidia-graphics-drivers-tesla-460 (460.106.00-3) unstable; urgency=medium
 .
   * The Tesla 460 driver series has been declared as End-of-Life by
     NVIDIA. No further updates fixing security issues, critical bugs, or
     adding support for new Xorg or Linux releases will be issued.
https://docs.nvidia.com/datacenter/tesla/drivers/
 .
   * Turn metapackages into transitional packages to aid switching to
     nvidia-graphics-drivers-tesla-470.
     (Closes: #1004852, #1005933, #1011145)
   * Provide less virtual packages.
   * Remove the Tesla 460 driver from the nvidia alternative.
 .
 nvidia-graphics-drivers-tesla-460 (460.106.00-2) unstable; urgency=medium
 .
   * Backport stdarg.h and stddef.h changes from 495.44 to fix kernel module
     build for Linux 5.16.
   * Backport pde_data changes from 470.103.01 to fix kernel module build for
     Linux 5.17.  (Closes: #1005406)
   * nvidia-tesla-460-kernel-support: Provide
     /etc/modprobe.d/nvidia-options.conf as a template taking into account the
     module renaming. This is a slave alternative of the nvidia alternative
     (470.86-1).  (Closes: #999670)
   * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt
     kernels, not supported upstream (510.54-1).
   * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1).
 .
 nvidia-graphics-drivers-tesla-460 (460.106.00-1) unstable; urgency=medium
 .
   * New upstream Tesla release 460.106.00 (2021-10-26).
 .
   [ Andreas Beckmann ]
   * bug-script: Show the nvidia and glx alternatives (470.82.00-1).
   * nvidia-tesla-460-alternative: libnvidia-cfg.so.1 on its own is not
     sufficient to activate a nvidia alternative (470.82.00-1).
     (Closes: #996595)
   * Fix bashisms in upstream scripts (470.82.00-1).
   * Drop the unusable leftover non-GLVND libegl1-nvidia-tesla-460 package
     (470.82.00-1).
   * nvidia-tesla-460-alternative: Drop unused non-GLVND slave links
     (470.82.00-1).
   * Update lintian overrides.
 .
 nvidia-graphics-drivers-tesla-460 (460.91.03-2) unstable; urgency=medium
 .
   * Backport drm_device_has_pdev and set_current_state changes from 470.63.01
     to fix kernel module build for Linux 5.14.
   * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore
     (470.57.02-3).
   * Bump Standards-Version to 4.6.0. No changes needed.
   * Update lintian overrides.
Checksums-Sha1:
 f5703f3800256dfa57c8fbd40c924e46863cb779 7482 nvidia-graphics-drivers-tesla-460_460.106.00-6~deb11u1.dsc
 31d968d0e02dd9afca3b719669866dd27c56cbef 212852 nvidia-graphics-drivers-tesla-460_460.106.00-6~deb11u1.debian.tar.xz
 6ecfd24f140a1c615b021a6b86ccfa3d0935b065 8153 nvidia-graphics-drivers-tesla-460_460.106.00-6~deb11u1_source.buildinfo
Checksums-Sha256:
 10a741543c7b7370c868dbb86c0bb687ff3d756964477236d50838e71b748043 7482 nvidia-graphics-drivers-tesla-460_460.106.00-6~deb11u1.dsc
 65141cf44c9be59eee8689f45766fa77a4e27f2cec0254e0805566a8b90c5a06 212852 nvidia-graphics-drivers-tesla-460_460.106.00-6~deb11u1.debian.tar.xz
 65b4023be640fc04d723bfa6fe03ff5fab80026edd25580e5c4db8ac8e4c86ce 8153 nvidia-graphics-drivers-tesla-460_460.106.00-6~deb11u1_source.buildinfo
Files:
 a959d61846ee38814bca0dd24fecdc3f 7482 non-free/libs optional nvidia-graphics-drivers-tesla-460_460.106.00-6~deb11u1.dsc
 edebcc37dd29df6ae6d04fcdb8e7a4f7 212852 non-free/libs optional nvidia-graphics-drivers-tesla-460_460.106.00-6~deb11u1.debian.tar.xz
 4fd436dea58f53fec05001418f214f72 8153 non-free/libs optional nvidia-graphics-drivers-tesla-460_460.106.00-6~deb11u1_source.buildinfo
-----BEGIN PGP SIGNATURE-----
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=flpf
-----END PGP SIGNATURE-----