![]() ![]() $ sudo apt full-upgrade CVE IDs AddressedĭGX-1, DGX-2, DGX A100, DGX Station, DGX Station A100 If a version of the liblog4j2-java library built from a vulnerable apache-log4j2 source package is installed, run the following commands to get the updated version: To check if a version of the liblog4j2-java library built from a vulnerable apache-log4j2 source package is installed on your system, run the following command:įixes to address this issue are available from Canonical in the updated versions listed in the following table. ![]() NVIDIA did not include the Log4j Java library in its DGX OS releases, but this library might have been installed by a user as additional software. For example: /usr/local/cuda/libnsight/plugins/_1.9.2.v201404171502/lib/ant-apache-log4j.jar DGX Systemsīy default, DGX systems are not exposed to this issue. For example: C:\Program Files\NVIDIA GPU Computing Toolkit\CUDA\v11.5\libnvvp\plugins\_1.9.2.v201404171502\lib\ant-apache-log4j.jar If concerned, customers can safely delete the files as a mitigation. Because they are not being used, an update is being prepared to remove the Log4j files from CUDA Toolkit 10.2 updates. However it is not being used and there is no risk to users who have the Log4j files. Update to an Nsight Eclipse Plugins Edition in CUDA Toolkit version 11.0 or laterĪlternatively, note that Log4j is included in CUDA Toolkit 10.2 and earlier. Updates for version 10.2 will be available in February 2022. Nsight Eclipse Plugins Edition in CUDA Toolkit version 11.0 or later Nsight Eclipse Edition in CUDA Toolkit prior to version 11.0 Because they are not being used, an update is being prepared to remove the Log4j files from CUDA Toolkit. Visual Profiler in CUDA Toolkit version 11.5 and prior versionsĬUDA Toolkit updates 11.5.2 and 11.4.4 will be available in February 2022.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |