Privilege Escalation Vulnerability in NVIDIA Tegra X1 for Android Devices
CVE-2017-6293

7.8HIGH

Key Information:

Vendor
Nvidia
Status
Vendor
CVE Published:
10 May 2018

Summary

A vulnerability has been identified in NVIDIA Tegra X1 within the Widevine TA component for Android devices prior to the May 2018 security patch. This issue arises from improper handling of input data, resulting in potential buffer overflows. Exploitation of this vulnerability could allow an attacker to write data beyond the allocated buffer boundaries, leading to unauthorized escalation of privileges on affected systems.

Affected Version(s)

Android NA

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.