[Git][security-tracker-team/security-tracker][master] bookworm triage

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Feb 26 09:08:51 GMT 2025



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
70c53e10 by Moritz Muehlenhoff at 2025-02-26T10:08:16+01:00
bookworm triage

- - - - -


2 changed files:

- data/CVE/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -35,42 +35,42 @@ CVE-2025-0235 (Out-of-bounds vulnerability due to improper memory release during
 CVE-2025-0234 (Out-of-bounds vulnerability in curve segmentation processing of Generi ...)
 	TODO: check
 CVE-2024-53879 (NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in  ...)
-	- nvidia-cuda-toolkit <unfixed>
-	[bookworm] - nvidia-cuda-toolkit <no-dsa> (Non-free not supported)
+	- nvidia-cuda-toolkit <unfixed> (unimportant)
+	NOTE: Crash in CLI tool, no security impact
 	NOTE: https://nvidia.custhelp.com/app/answers/detail/a_id/5594
 CVE-2024-53878 (NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in  ...)
-	- nvidia-cuda-toolkit <unfixed>
-	[bookworm] - nvidia-cuda-toolkit <no-dsa> (Non-free not supported)
+	- nvidia-cuda-toolkit <unfixed> (unimportant)
+	NOTE: Crash in CLI tool, no security impact
 	NOTE: https://nvidia.custhelp.com/app/answers/detail/a_id/5594
 CVE-2024-53877 (NVIDIA CUDA toolkit for all platforms contains a vulnerability in the  ...)
-	- nvidia-cuda-toolkit <unfixed>
-	[bookworm] - nvidia-cuda-toolkit <no-dsa> (Non-free not supported)
+	- nvidia-cuda-toolkit <unfixed> (unimportant)
+	NOTE: Crash in CLI tool, no security impact
 	NOTE: https://nvidia.custhelp.com/app/answers/detail/a_id/5594
 CVE-2024-53876 (NVIDIA CUDA toolkit for all platforms contains a vulnerability in the  ...)
-	- nvidia-cuda-toolkit <unfixed>
-	[bookworm] - nvidia-cuda-toolkit <no-dsa> (Non-free not supported)
+	- nvidia-cuda-toolkit <unfixed> (unimportant)
+	NOTE: Crash in CLI tool, no security impact
 	NOTE: https://nvidia.custhelp.com/app/answers/detail/a_id/5594
 CVE-2024-53875 (NVIDIA CUDA toolkit for all platforms contains a vulnerability in the  ...)
-	- nvidia-cuda-toolkit <unfixed>
-	[bookworm] - nvidia-cuda-toolkit <no-dsa> (Non-free not supported)
+	- nvidia-cuda-toolkit <unfixed> (unimportant)
+	NOTE: Crash in CLI tool, no security impact
 	NOTE: https://nvidia.custhelp.com/app/answers/detail/a_id/5594
 CVE-2024-53874 (NVIDIA CUDA toolkit for all platforms contains a vulnerability in the  ...)
-	- nvidia-cuda-toolkit <unfixed>
-	[bookworm] - nvidia-cuda-toolkit <no-dsa> (Non-free not supported)
+	- nvidia-cuda-toolkit <unfixed> (unimportant)
+	NOTE: Crash in CLI tool, no security impact
 	NOTE: https://nvidia.custhelp.com/app/answers/detail/a_id/5594
 CVE-2024-53873 (NVIDIA CUDA toolkit for Windows contains a vulnerability in the cuobjd ...)
 	TODO: check
 CVE-2024-53872 (NVIDIA CUDA toolkit for all platforms contains a vulnerability in the  ...)
-	- nvidia-cuda-toolkit <unfixed>
-	[bookworm] - nvidia-cuda-toolkit <no-dsa> (Non-free not supported)
+	- nvidia-cuda-toolkit <unfixed> (unimportant)
+	NOTE: Crash in CLI tool, no security impact
 	NOTE: https://nvidia.custhelp.com/app/answers/detail/a_id/5594
 CVE-2024-53871 (NVIDIA CUDA toolkit for all platforms contains a vulnerability in the  ...)
-	- nvidia-cuda-toolkit <unfixed>
-	[bookworm] - nvidia-cuda-toolkit <no-dsa> (Non-free not supported)
+	- nvidia-cuda-toolkit <unfixed> (unimportant)
+	NOTE: Crash in CLI tool, no security impact
 	NOTE: https://nvidia.custhelp.com/app/answers/detail/a_id/5594
 CVE-2024-53870 (NVIDIA CUDA toolkit for all platforms contains a vulnerability in the  ...)
-	- nvidia-cuda-toolkit <unfixed>
-	[bookworm] - nvidia-cuda-toolkit <no-dsa> (Non-free not supported)
+	- nvidia-cuda-toolkit <unfixed> (unimportant)
+	NOTE: Crash in CLI tool, no security impact
 	NOTE: https://nvidia.custhelp.com/app/answers/detail/a_id/5594
 CVE-2024-39441 (In wifi display, there is a possible missing permission check. This co ...)
 	NOT-FOR-US: Unisoc


=====================================
data/dsa-needed.txt
=====================================
@@ -11,6 +11,8 @@ To pick an issue, simply add your uid behind it.
 
 If needed, specify the release by adding a slash after the name of the source package.
 
+--
+emacs (jmm)
 --
 fort-validator
   probably best to bump bookworm to current upstream



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/70c53e108fafeb55593cca5f274c253d2cca4a45

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/70c53e108fafeb55593cca5f274c253d2cca4a45
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250226/fd5498b8/attachment.htm>


More information about the debian-security-tracker-commits mailing list