Hi all,
There is a number of vulnerabilities in cuda-toolkit v12 and previous at least in local rpm for RHEL 7 (https://developer.nvidia.com/cuda-downloads?target_os=Linux&target_arch=x86_64&Distribution=RHEL&target_version=7&target_type=rpm_local)
Vulnerabilities list: CVE-2020-1945, CVE-2021-36373, CVE-2021-36374
Vulnerable file: /usr/local/cuda-12.0/libnvvp/plugins/org.apache.ant_1.9.2.v201404171502/lib/ant.jar
Need at least 1.9.16 to fix. Is there any plan to fix this soon? Any ETA?
Thnx!