PyPi: Nvidia-Riva-Client

CVE-2022-40897

Transitive

Safety vulnerability ID: 74572

This vulnerability was reviewed by experts

The information on this page was manually curated by our Cybersecurity Intelligence Team.

Created at Dec 23, 2022 Updated at Jan 02, 2025
Scan your Python projects for vulnerabilities →

Advisory

Nvidia-riva-client updates setuptools to version 70 to patch security vulnerability CVE-2022-40897.

Affected package

nvidia-riva-client

Latest version: 2.18.0

Python implementation of the Riva Client API

Affected versions

Fixed versions

Vulnerability changelog

* update to grpcio>=1.66.1 by virajkarandikar in https://github.com/nvidia-riva/python-clients/pull/101
* Update grpcio to 1.67.1 by virajkarandikar in https://github.com/nvidia-riva/python-clients/pull/103
* Getting VAD states from the riva-server by sarane22 in https://github.com/nvidia-riva/python-clients/pull/102
* chore: Updating package info by atomer-nvidia in https://github.com/nvidia-riva/python-clients/pull/105
* fix: Check for None type custom dict by mohnishparmar in https://github.com/nvidia-riva/python-clients/pull/106
* changes made for custom translation, dnt phrases by ydharavath in https://github.com/nvidia-riva/python-clients/pull/108
* fix: Fix declaration of variables by mohnishparmar in https://github.com/nvidia-riva/python-clients/pull/109

New Contributors
* ydharavath made their first contribution in https://github.com/nvidia-riva/python-clients/pull/108

**Full Changelog**: https://github.com/nvidia-riva/python-clients/compare/r2.17.0...r2.18.0

r2.17.0
What's Changed
* Merge release/2.16.0 to main by rmittal-github in https://github.com/nvidia-riva/python-clients/pull/84
* asr: add model name parameter by virajkarandikar in https://github.com/nvidia-riva/python-clients/pull/85
* pin grpcio to 1.64.1 by virajkarandikar in https://github.com/nvidia-riva/python-clients/pull/86
* pin setuptools to 65 by virajkarandikar in https://github.com/nvidia-riva/python-clients/pull/87
* Update talk.py by virajkarandikar in https://github.com/nvidia-riva/python-clients/pull/88
* Update talk.py by virajkarandikar in https://github.com/nvidia-riva/python-clients/pull/89
* Update setuptools to 70 to address CVEs by virajkarandikar in https://github.com/nvidia-riva/python-clients/pull/90
* Add custom dictionary parameter to tts py-client by manishaj-nv in https://github.com/nvidia-riva/python-clients/pull/82
* Update grpcio to 1.65.4 by virajkarandikar in https://github.com/nvidia-riva/python-clients/pull/91
* Update package_info.py by rmittal-github in https://github.com/nvidia-riva/python-clients/pull/92
* Adding AST support to python clients by sarane22 in https://github.com/nvidia-riva/python-clients/pull/94
* Accept max_speaker_count as input in ASR Transcription client by pskrunner14 in https://github.com/nvidia-riva/python-clients/pull/97

New Contributors
* pskrunner14 made their first contribution in https://github.com/nvidia-riva/python-clients/pull/97

**Full Changelog**: https://github.com/nvidia-riva/python-clients/compare/r2.16.0...r2.17.0

r2.16.0
What's Changed
* Added configurable Start and End of Utterance parameters to ASR by manishaj-nv in https://github.com/nvidia-riva/python-clients/pull/80
* Update package_info.py by rmittal-github in https://github.com/nvidia-riva/python-clients/pull/81
* add list voices support to tts client by virajkarandikar in https://github.com/nvidia-riva/python-clients/pull/78
* Exposing the 'stop_historu_eou_th' parameter by sarane22 in https://github.com/nvidia-riva/python-clients/pull/83

New Contributors
* manishaj-nv made their first contribution in https://github.com/nvidia-riva/python-clients/pull/80
* sarane22 made their first contribution in https://github.com/nvidia-riva/python-clients/pull/83

**Full Changelog**: https://github.com/nvidia-riva/python-clients/compare/r2.15.1...r2.16.0

r2.15.1
What's Changed
* add security info by virajkarandikar in https://github.com/nvidia-riva/python-clients/pull/61
* feat(tts): Adding support for pflow model input. by atomer-nvidia in https://github.com/nvidia-riva/python-clients/pull/63
* Update package_info.py by rmittal-github in https://github.com/nvidia-riva/python-clients/pull/67

Resources

Use this package?

Scan your Python project for dependency vulnerabilities in two minutes

Scan your application

Severity Details

CVSS Base Score

MEDIUM 5.9

CVSS v3 Details

MEDIUM 5.9
Attack Vector (AV)
NETWORK
Attack Complexity (AC)
HIGH
Privileges Required (PR)
NONE
User Interaction (UI)
NONE
Scope (S)
UNCHANGED
Confidentiality Impact (C)
NONE
Integrity Impact (I)
NONE
Availability Availability (A)
HIGH