From owner-cvs-ports@FreeBSD.ORG Thu May 10 11:22:00 2012 Return-Path: Delivered-To: cvs-ports@FreeBSD.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id B39F8106566B; Thu, 10 May 2012 11:22:00 +0000 (UTC) (envelope-from danfe@FreeBSD.org) Received: from repoman.freebsd.org (repoman.freebsd.org [IPv6:2001:4f8:fff6::29]) by mx1.freebsd.org (Postfix) with ESMTP id 81FBD8FC12; Thu, 10 May 2012 11:22:00 +0000 (UTC) Received: from repoman.freebsd.org (localhost [127.0.0.1]) by repoman.freebsd.org (8.14.4/8.14.4) with ESMTP id q4ABM0kS060183; Thu, 10 May 2012 11:22:00 GMT (envelope-from danfe@repoman.freebsd.org) Received: (from danfe@localhost) by repoman.freebsd.org (8.14.4/8.14.4/Submit) id q4ABM0mn060182; Thu, 10 May 2012 11:22:00 GMT (envelope-from danfe) Message-Id: <201205101122.q4ABM0mn060182@repoman.freebsd.org> From: Alexey Dokuchaev Date: Thu, 10 May 2012 11:22:00 +0000 (UTC) To: ports-committers@FreeBSD.org, cvs-ports@FreeBSD.org, cvs-all@FreeBSD.org X-FreeBSD-CVS-Branch: HEAD Cc: Subject: cvs commit: ports/x11/nvidia-driver Makefile ports/x11/nvidia-driver/files security-patch-CVE-2012-0946 ports/x11/nvidia-driver-173 Makefile X-BeenThere: cvs-ports@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: CVS commit messages for the ports tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 10 May 2012 11:22:00 -0000 danfe 2012-05-10 11:22:00 UTC FreeBSD ports repository Modified files: x11/nvidia-driver Makefile x11/nvidia-driver-173 Makefile Added files: x11/nvidia-driver/files security-patch-CVE-2012-0946 Log: Provide home-made patch for legacy nVidia drivers against recent arbitrary memory access vulnerability. While affected underlying code is very similar in all released drivers, and they all are technically exploitable the same way, the exploit relies on hardware that is not present in GPUs older than NV50/G80, hence versions starting from 100.14.03 must be patched. That said, while the patch does apply to all legacy versions, port revision bump makes sense only for 173.14.xx series (as 96.43.xx and 71.86.xx do not hardware exploit relies upon). Discussed with: Christian Zander Security: CVE-2012-0946 Revision Changes Path 1.12 +1 -0 ports/x11/nvidia-driver-173/Makefile 1.117 +4 -0 ports/x11/nvidia-driver/Makefile 1.1 +28 -0 ports/x11/nvidia-driver/files/security-patch-CVE-2012-0946 (new)