Buffer Overflow Vulnerability in NVIDIA Jetson Devices
CVE-2021-34372

8.2HIGH

Key Information:

Summary

A vulnerability in NVIDIA's Jetson Trusted OS arises from an integer overflow in the OTE protocol message parsing code. This flaw can lead to a buffer overflow on the heap, potentially allowing attackers to exploit the system. The consequences may include information disclosure, unauthorized escalation of privileges, or even a denial of service, impacting the overall security and functionality of affected Jetson devices.

Affected Version(s)

NVIDIA Jetson TX2 series, TX2 NX, AGX Xavier series, Xavier NX All Jetson Linux versions prior to r32.5.1

References

CVSS V3.1

Score:
8.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.