SUSE-SU-2025:03247-1

Source
https://www.suse.com/support/update/announcement/2025/suse-su-202503247-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:03247-1.json
JSON Data
https://api.test.osv.dev/v1/vulns/SUSE-SU-2025:03247-1
Upstream
  • CVE-2025-23277
  • CVE-2025-23278
  • CVE-2025-23283
Related
Published
2025-09-17T11:11:37Z
Modified
2025-09-18T20:17:21.580727Z
Summary
Security update for nvidia-open-driver-G06-signed
Details

This update for nvidia-open-driver-G06-signed fixes the following issues:

Updated CUDA variant to 580.82.07:

  • CVE-2025-23277: Fixed access memory outside bounds permitted under normal use cases in NVIDIA Display Driver (bsc#1247528).
  • CVE-2025-23278: Fixed improper index validation by issuing a call with crafted parameters in NVIDIA Display Driver (bsc#1247529).
  • CVE-2025-23286: Fixed invalid memory read in NVIDIA GPU Display Driver (bsc#1247530).
  • CVE-2025-23283: Fixed stack buffer overflow triggerable by a malicious guest in Virtual GPU Manager in NVIDIA vGPU software (bsc#1247531).
  • CVE-2025-23279: Fixed race condition that lead to privileges escalations in NVIDIA .run Installer (bsc#1247532).

Update non-CUDA variant to 580.82.07 (bsc#1249235).

Other fixes:

  • Added Requires to be provided by special versions of nvidia-modprobe and nvidia-persitenced built against SP4 (bsc#1237208, jsc#PED-13295).
  • Get rid of rule of older KMPs not to load nvidia_drm module,
    which are still installed in parallel and therefore still
    active (bsc#1247923).
References

Affected packages

openSUSE:Leap 15.6

nvidia-open-driver-G06-signed

Package

Name
nvidia-open-driver-G06-signed
Purl
pkg:rpm/opensuse/nvidia-open-driver-G06-signed&distro=openSUSE%20Leap%2015.6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
580.82.07-150600.3.63.1

Ecosystem specific

{
    "binaries": [
        {
            "nvidia-open-driver-G06-signed-cuda-kmp-azure": "580.82.07_k6.4.0_150600.8.48-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-kmp-default": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1",
            "nvidia-open-driver-G06-signed-kmp-azure": "580.82.07_k6.4.0_150600.8.48-150600.3.63.1",
            "nvidia-open-driver-G06-signed-azure-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-kmp-default": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-64kb-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-default-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-64kb-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-azure-devel": "580.82.07-150600.3.63.1",
            "nv-prefer-signed-open-driver": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-default-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-kmp-64kb": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1",
            "nvidia-open-driver-G06-signed-kmp-64kb": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1"
        }
    ]
}

nvidia-open-driver-G06-signed-cuda

Package

Name
nvidia-open-driver-G06-signed-cuda
Purl
pkg:rpm/opensuse/nvidia-open-driver-G06-signed-cuda&distro=openSUSE%20Leap%2015.6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
580.82.07-150600.3.63.1

Ecosystem specific

{
    "binaries": [
        {
            "nvidia-open-driver-G06-signed-cuda-kmp-azure": "580.82.07_k6.4.0_150600.8.48-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-kmp-default": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1",
            "nvidia-open-driver-G06-signed-kmp-azure": "580.82.07_k6.4.0_150600.8.48-150600.3.63.1",
            "nvidia-open-driver-G06-signed-azure-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-kmp-default": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-64kb-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-default-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-64kb-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-azure-devel": "580.82.07-150600.3.63.1",
            "nv-prefer-signed-open-driver": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-default-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-kmp-64kb": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1",
            "nvidia-open-driver-G06-signed-kmp-64kb": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1"
        }
    ]
}

SUSE:Linux Enterprise Module for Basesystem 15 SP6

nvidia-open-driver-G06-signed

Package

Name
nvidia-open-driver-G06-signed
Purl
pkg:rpm/suse/nvidia-open-driver-G06-signed&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
580.82.07-150600.3.63.1

Ecosystem specific

{
    "binaries": [
        {
            "nvidia-open-driver-G06-signed-kmp-default": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-kmp-default": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1",
            "nvidia-open-driver-G06-signed-64kb-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-default-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-64kb-devel": "580.82.07-150600.3.63.1",
            "nv-prefer-signed-open-driver": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-default-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-kmp-64kb": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1",
            "nvidia-open-driver-G06-signed-kmp-64kb": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1"
        }
    ]
}

nvidia-open-driver-G06-signed-cuda

Package

Name
nvidia-open-driver-G06-signed-cuda
Purl
pkg:rpm/suse/nvidia-open-driver-G06-signed-cuda&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
580.82.07-150600.3.63.1

Ecosystem specific

{
    "binaries": [
        {
            "nvidia-open-driver-G06-signed-kmp-default": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-kmp-default": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1",
            "nvidia-open-driver-G06-signed-64kb-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-default-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-64kb-devel": "580.82.07-150600.3.63.1",
            "nv-prefer-signed-open-driver": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-default-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-kmp-64kb": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1",
            "nvidia-open-driver-G06-signed-kmp-64kb": "580.82.07_k6.4.0_150600.23.65-150600.3.63.1"
        }
    ]
}

SUSE:Linux Enterprise Module for Public Cloud 15 SP6

nvidia-open-driver-G06-signed

Package

Name
nvidia-open-driver-G06-signed
Purl
pkg:rpm/suse/nvidia-open-driver-G06-signed&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
580.82.07-150600.3.63.1

Ecosystem specific

{
    "binaries": [
        {
            "nvidia-open-driver-G06-signed-cuda-kmp-azure": "580.82.07_k6.4.0_150600.8.48-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-azure-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-kmp-azure": "580.82.07_k6.4.0_150600.8.48-150600.3.63.1",
            "nvidia-open-driver-G06-signed-azure-devel": "580.82.07-150600.3.63.1"
        }
    ]
}

nvidia-open-driver-G06-signed-cuda

Package

Name
nvidia-open-driver-G06-signed-cuda
Purl
pkg:rpm/suse/nvidia-open-driver-G06-signed-cuda&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
580.82.07-150600.3.63.1

Ecosystem specific

{
    "binaries": [
        {
            "nvidia-open-driver-G06-signed-cuda-kmp-azure": "580.82.07_k6.4.0_150600.8.48-150600.3.63.1",
            "nvidia-open-driver-G06-signed-cuda-azure-devel": "580.82.07-150600.3.63.1",
            "nvidia-open-driver-G06-signed-kmp-azure": "580.82.07_k6.4.0_150600.8.48-150600.3.63.1",
            "nvidia-open-driver-G06-signed-azure-devel": "580.82.07-150600.3.63.1"
        }
    ]
}

SUSE:Linux Enterprise Module for Public Cloud 15 SP7

nvidia-open-driver-G06-signed-cuda

Package

Name
nvidia-open-driver-G06-signed-cuda
Purl
pkg:rpm/suse/nvidia-open-driver-G06-signed-cuda&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
580.82.07-150600.3.63.1

Ecosystem specific

{
    "binaries": [
        {
            "nvidia-open-driver-G06-signed-cuda-azure-devel": "580.82.07-150600.3.63.1"
        }
    ]
}