Buffer Overflow Vulnerability in Trusted Applications by NVIDIA
CVE-2021-34375
7.7HIGH
Key Information:
- Vendor
- Nvidia
- Vendor
- CVE Published:
- 30 June 2021
Summary
A vulnerability exists in NVIDIA Trusted Applications where the stack cookie is not adequately randomized. This flaw could be exploited to perform stack-based buffer overflow attacks, potentially leading to denial of service, privilege escalation, and unauthorized information disclosure.
Affected Version(s)
NVIDIA Jetson AGX Xavier series, Jetson Xavier NX, Jetson TX2 series, Jetson TX2 NX All Jetson Linux versions prior to r32.5.1
References
CVSS V3.1
Score:
7.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved