1. Computers
  2. Display Drivers
  3. Graphics Cards
  4. Memory
  5. Motherboards
  6. Processors
  7. Software
  8. Storage
  9. Operating Systems


Facebook RSS Twitter Twitter Google Plus


Phoronix Test Suite

OpenBenchmarking Benchmarking Platform
Phoromatic Test Orchestration

NVIDIA Has New Driver Update To Fix Security Flaw

NVIDIA

Published on 03 April 2013 01:04 AM EDT
Written by Fatima Sheremetyeva in NVIDIA
1 Comment

NVIDIA released the 313.30 Linux graphics driver on Tuesday night to take care of a security vulnerability.

Similar to past special-case releases to address security vulnerabilities with NVIDIA's binary blob, the 313.30 driver release officially just contains one security-related fix:
Fixed CVE-2013-0131: NVIDIA UNIX GPU Driver ARGB Cursor Buffer Overflow in "NoScanout" Mode. This buffer overflow, which occurred when an X client installed a large ARGB cursor on an X server running in NoScanout mode, could cause a denial of service (e.g., an X server segmentation fault), or could be exploited to achieve arbitrary code execution.
Details on this important NVIDIA driver security bug, which also hit FreeBSD and Solaris OS users, can be found in their customer portal. The good news is that this only affects those using the NoScanOut mode.

This security vulnerability that could take advantage of the X.Org Server generally running as the root user has affected NVIDIA users for a long while -- since the 195.22 driver days, or more easily known as late 2009. This is the first high-profile NVIDIA security driver bug in a few months, but last year they had some issues covered by Michael's NVIDIA Fixes Linux GPU Driver Security Hole and NVIDIA 295.40 Closes High-Risk Security Flaw.

This latest NVIDIA Linux graphics driver can be fetched from NVIDIA.com and is classified as a "certified" Linux GPU driver release.

Latest Articles & Reviews
  1. Radeon Linux Benchmarks: Catalyst 15.3 Beta vs. Linux 4.0 + Mesa 10.6-devel
  2. Trying Out The Modern Linux Desktops With 4 Monitors + AMD/NVIDIA Graphics
  3. Turning A Basement Into A Big Linux Server Room
  4. NVIDIA's $1000+ GeForce GTX TITAN X Delivers Maximum Linux Performance
  5. OS X 10.10 vs. Ubuntu 15.04 vs. Fedora 21 Tests: Linux Sweeps The Board
  6. The New Place Where Linux Code Is Constantly Being Benchmarked
Latest Linux News
  1. It's Been Five Years Since The Phoronix Visit To Chernobyl
  2. Vulkan, The New Linux Server Room & BioShock Won Linux Users In March
  3. Debian 8.0 Jessie Gets A Release Date
  4. Firefox 37 Coming Today With Heartbeat, HTTPS Bing
  5. OpenIndiana 2015.03 Updates Its Solaris/Illumos Environment
  6. GNOME 3.16 SDK Runtime Now Available
  7. Initial Intel Braxton Support Might Come To Linux 4.1
  8. Why KDE's KWin Doesn't Integrate Weston/QtCompositor For Wayland Support
  9. Clang Now Supports Targeting The NaCl OS
  10. PC-BSD Updates Its Lumina Desktop (v0.8.3)
Most Viewed News This Week
  1. The Big Features Of The Linux 4.0 Kernel
  2. Improved OpenCL Support For Blender's Cycles Renderer
  3. Open-Source Driver Fans Will Love NVIDIA's New OpenGL Demo
  4. Allwinner Continues Jerking Around The Open-Source Community
  5. GNOME 3.16 Released: It's Their Best Release Yet
  6. Ubuntu 15.04 Final Beta Released
  7. Nuclide: Facebook's New Unified IDE
  8. LibreOffice Online: A Cloud Version Of LibreOffice