Heap Overflow Vulnerability in NVIDIA TegraBoot
CVE-2021-34388
6.3MEDIUM
Key Information:
- Vendor
- Nvidia
- Vendor
- CVE Published:
- 21 June 2021
Summary
NVIDIA TegraBoot contains a vulnerability that could allow an attacker to exploit a heap overflow. This security flaw may enable unauthorized manipulation of memory allocation, potentially leading to control over RAM regions following the affected heap block. As a result, this could facilitate denial of service attacks or unauthorized code execution, posing significant risks to system integrity and security.
Affected Version(s)
NVIDIA Jetson TX1, TX2 series, TX2 NX, AGX Xavier series, Xavier NX, Nano and Nano 2GB All Jetson Linux versions prior to r32.5.1
References
CVSS V3.1
Score:
6.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved