Memory Buffer Vulnerability in Trusty's HDCP Service by NVIDIA
CVE-2021-34376

7.7HIGH

Key Information:

Summary

NVIDIA's Trusty HDCP service contains a vulnerability due to the absence of proper bounds checking in command 5. This oversight allows for potential exploitation that could result in denial of service, privilege escalation, and exposure of sensitive information. Cybersecurity practitioners must be vigilant to protect against threats arising from this vulnerability.

Affected Version(s)

NVIDIA Jetson AGX Xavier series, Jetson Xavier NX, Jetson TX2 series, Jetson TX2 NX All Jetson Linux versions prior to r32.5.1

References

CVSS V3.1

Score:
7.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.