MGASA-2021-0029

Source
https://advisories.mageia.org/MGASA-2021-0029.html
Import Source
https://advisories.mageia.org/MGASA-2021-0029.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2021-0029
Related
Published
2021-01-14T20:10:06Z
Modified
2026-03-25T17:59:11.019962Z
Summary
Updated nvidia-current packages fix security vulnerabilities
Details

NVIDIA GPU Display Driver Linux contains a vulnerability in the kernel mode layer (nvidia.ko) IOCTL in which user-mode clients can access legacy privileged APIs, which may lead to denial of service, escalation of privileges, and information disclosure (CVE‑2021‑1052).

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko) IOCTL in which improper validation of a user pointer may lead to denial of service (CVE‑2021‑1053).

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko) in which it does not completely honor operating system file system permissions to provide GPU device-level isolation, which may lead to denial of service or information disclosure (CVE‑2021‑1056).

References
Credits

Affected packages

Mageia:7 / ldetect-lst

Package

Name
ldetect-lst
Purl
pkg:rpm/mageia/ldetect-lst?arch=source&distro=mageia-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.6.9.1-1.mga7

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2021-0029.json"

Mageia:7 / nvidia-current

Package

Name
nvidia-current
Purl
pkg:rpm/mageia/nvidia-current?arch=source&distro=mageia-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
460.32.03-1.mga7.nonfree

Ecosystem specific

{
    "section": "nonfree"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2021-0029.json"