NVIDIA fixes critical flaw in NSIGHT Graphics for Linux

NVIDIA has released an urgent security update to address a high-severity vulnerability in its NSIGHT Graphics tool for Linux systems. The flaw, identified as CVE-2025-33206, could enable attackers to execute arbitrary code if exploited. Affected users are urged to upgrade immediately to mitigate risks.

On January 21, 2026, NVIDIA announced a critical security patch for NSIGHT Graphics for Linux, a tool used in development and graphics workloads. The vulnerability, tracked under CVE-2025-33206, carries a CVSS score of 7.8, classifying it as high severity. It arises from improper input validation in command processing, specifically under CWE-78, where special elements in operating system commands are not neutralized properly.

This flaw allows attackers with local system access to inject malicious inputs, potentially escaping command contexts and executing arbitrary system commands with elevated privileges. Successful exploitation could lead to unauthorized code execution, privilege escalation, data tampering, or denial-of-service attacks. However, triggering the vulnerability requires both local access and user interaction, such as tricking a user into performing a specific action.

The issue poses significant risks to confidentiality, integrity, and availability, particularly in environments handling graphics and development tasks. All versions of NSIGHT Graphics for Linux prior to 2025.5 are affected. NVIDIA recommends upgrading to version 2025.5 or later, available for download from its official developer portal.

In the interim, organizations should limit local access to vulnerable systems and adhere to the principle of least privilege. Further details, including security bulletins and notification subscriptions, can be found on NVIDIA's Product Security page. This update underscores the ongoing need for prompt patching in software development tools to safeguard against evolving threats.

Labaran da ke da alaƙa

Illustration of a Linux computer screen highlighting Amazon WorkSpaces vulnerability CVE-2025-12779, with security alert and hacker elements, for a news article on AWS security flaw.
Hoton da AI ya samar

Amazon discloses Linux WorkSpaces vulnerability in authentication tokens

An Ruwaito ta hanyar AI Hoton da AI ya samar

Amazon Web Services has revealed a security flaw in its WorkSpaces client for Linux that allows local attackers to extract authentication tokens and access other users' virtual desktops. The vulnerability, CVE-2025-12779, affects client versions from 2023.0 to 2024.8 and carries a CVSS score of 8.8. AWS urges immediate upgrades to version 2025.0 or later to mitigate the risk.

NVIDIA has launched version 580.119.02 of its graphics driver for Linux, BSD, and Solaris systems. The update addresses several display and compatibility issues reported by users. It serves as the latest recommended production branch for NVIDIA GPU users.

An Ruwaito ta hanyar AI

The GNU C Library has addressed a long-standing security vulnerability that dates back to 1996. This fix, identified as CVE-2026-0915, patches a flaw present in the library since its early versions. The update aims to enhance security for systems relying on this fundamental component of Linux distributions.

Arch Linux's recent switch to the NVIDIA 590 driver has disrupted systems for users with older graphics cards, dropping support for Pascal and earlier architectures. The change pushes legacy drivers to the Arch User Repository, requiring manual fixes for affected hardware. Newer GPUs transition smoothly to open kernel modules.

An Ruwaito ta hanyar AI

NVIDIA has launched the 595.45.04 beta driver for Linux, introducing new Vulkan extensions and DRI3 version 1.2 support. The update includes fixes for gaming stability and improvements in power management. It also raises minimum requirements for Wayland and glibc.

Canonical's Ubuntu distribution has advanced significantly in 2025, incorporating the Rust programming language to bolster security and reliability across its core components. These updates, featured in releases like Ubuntu 25.10 Questing Quokka, also optimize hardware support for AI and diverse architectures. As the project eyes its next long-term support version, these changes position Ubuntu as a robust choice for developers and enterprises.

An Ruwaito ta hanyar AI

Nvidia has posted two job openings for senior Linux engineers aimed at improving its GPU drivers, particularly for Vulkan and Proton technologies. The roles focus on enhancing performance for Linux gaming, where AMD currently leads. This move comes as Linux gains popularity among gamers amid the end of Windows 10 support.

 

 

 

Wannan shafin yana amfani da cookies

Muna amfani da cookies don nazari don inganta shafin mu. Karanta manufar sirri mu don ƙarin bayani.
Ƙi