ECHO-8752-7f5c-2930

See a problem?
Import Source
https://advisory.echohq.com/osv/ECHO-8752-7f5c-2930.json
JSON Data
https://api.osv.dev/v1/vulns/ECHO-8752-7f5c-2930
Upstream
  • CVE-2025-33219
Withdrawn
2026-02-12T08:30:03Z
Published
2026-01-31T02:00:41Z
Modified
2026-09-15T03:33:39Z
Summary
CVE-2025-33219 is an integer overflow in the NVIDIA kernel module. Echo ships only userspace compatibility libraries (cuda-compat) via the cuda-13.1 package, not the kernel module. The vulnerable code path does not exist in the packages Echo distributes. Additionally, the installed version (590.48.01) is already at the fix threshold per NVIDIA Security Bulletin 5747. https://nvidia.custhelp.com/app/answers/detail/a_id/5747 https://security-tracker.debian.org/tracker/CVE-2025-33219
Details
References

Affected packages

Echo / nvidia-graphics-drivers

Package

Name
nvidia-graphics-drivers
Purl
pkg:deb/echo/nvidia-graphics-drivers

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
590.48.01-0ubuntu1+e1

Database specific

source
"https://advisory.echohq.com/osv/ECHO-8752-7f5c-2930.json"