Privilege Escalation and Data Tampering Vulnerability in NVIDIA Linux Kernel Distributions
CVE-2021-1106
7.8HIGH
Key Information:
- Vendor
- Nvidia
- Status
- Vendor
- CVE Published:
- 11 August 2021
Summary
A vulnerability within NVIDIA's Linux kernel distributions affects the nvmap interface, allowing unauthorized write access to read-only buffers. This flaw can lead to significant risks, including privilege escalation, complete denial of service, and serious data tampering across all processes. Users and organizations utilizing these distributions need to prioritize applying the relevant updates to mitigate these security risks.
Affected Version(s)
Jetson AGX Xavier series, Jetson Xavier NX, Jetson TX2 series, Jetson TX2 NX, Jetson Nano, Jetson Nano 2GB, Jetson TX1 All Jetson Linux versions prior to r32.6.1
Shield TV All versions prior to SE 9.0
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved