Access Control Vulnerability in Trusty TLK by NVIDIA
CVE-2021-34395
3.9LOW
Summary
Trusty TLK by NVIDIA is vulnerable due to improper access permission settings, which allow users with local privileges to access resources they should not. This flaw can potentially lead to some information disclosure, a slight risk of data modification, and a minimal chance of denial of service. Proper mitigation measures should be implemented to safeguard against these risks.
Affected Version(s)
NVIDIA Jetson TX1 All Jetson Linux versions prior to r32.5.1
References
CVSS V3.1
Score:
3.9
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved