n-g-d 196.36.31 security update?

Andreas Beckmann debian at abeckmann.de
Fri Apr 13 20:55:22 UTC 2012


Hi Russ,

do we want fix CVE-2012-0946 in stable?
I prepared a package with upstream's patch applied in
branches/195.36.31-squeeze:
    Add upstream patch nvidia-blacklist-register-mapping-195.diff:
    Closed a security vulnerability which made it possible for attackers to
    reconfigure GPUs to gain access to arbitrary system memory. For further
    details, see: http://nvidia.custhelp.com/app/answers/detail/a_id/3109
What would be the correct way: stable-proposed-updates or
stable-security?
Once this is fixed, the precompiled modules need to be updated, too.


Andreas



More information about the pkg-nvidia-devel mailing list