Access Control Flaw in NVIDIA Linux Kernel Distributions
CVE-2021-1107

7.8HIGH

Summary

A security issue in NVIDIA's Linux kernel distributions is present within the nvmap NVMAP_IOC_WRITE* interface due to insufficient access controls. This vulnerability can potentially allow unauthorized code execution, leading to a complete denial of service and a significant compromise of the integrity of system components. Users of affected products are advised to take the necessary precautions to mitigate risks associated with this flaw.

Affected Version(s)

Jetson AGX Xavier series, Jetson Xavier NX, Jetson TX2 series, Jetson TX2 NX, Jetson Nano, Jetson Nano 2GB, Jetson TX1 All Jetson Linux versions prior to r32.6.1

Shield TV All Shield TV versions prior to SE 9.0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.