SUSE-SU-2024:0770-1

    Dashboard / Vulnerabilities / SUSE-SU-2024:0770-1

    SUSE-SU-2024:0770-1

    Published: 5 Mar 2024Last Modified: 4 Feb 2026

    Summary: Security update for kernel-firmware-nvidia-gspx-G06, nvidia-open-driver-G06-signed

    Details: This update for kernel-firmware-nvidia-gspx-G06, nvidia-open-driver-G06-signed fixes the following issues: Update to 550.54.14 * Added vGPU Host and vGPU Guest support. For vGPU Host, please refer to the README.vgpu packaged in the vGPU Host Package for more details. Security issues fixed: * CVE-2024-0074: A user could trigger a NULL ptr dereference. * CVE-2024-0075: A user could overwrite the end of a buffer, leading to crashes or code execution. * CVE-2022-42265: A unprivileged user could trigger an integer overflow which could lead to crashes or code execution. - create /run/udev/static_node-tags/uaccess/nvidia${devid} symlinks also during modprobing the nvidia module; this changes the issue of not having access to /dev/nvidia${devid}, when gfxcard has been replaced by a different gfx card after installing the driver - provide nvidia-open-driver-G06-kmp (jsc#PED-7117) * this makes it easy to replace the package from nVidia's CUDA repository with this presigned package

    Affected packages

    Package

    Name: kernel-firmware-nvidia-gspx-G06

    Purl: pkg:rpm/suse/kernel-firmware-nvidia-gspx-G06&distro=SUSE%20Linux%20Enterprise%20Micro%205.3

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -550.54.14-150400.9.21.1

    Affected versions

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    SUSE-SU-2024:0770-1 | CVE-DB