Access Control Vulnerability in Trusty TLK by NVIDIA
CVE-2021-34395

3.9LOW

Key Information:

Vendor
Nvidia
Vendor
CVE Published:
22 June 2021

Summary

Trusty TLK by NVIDIA is vulnerable due to improper access permission settings, which allow users with local privileges to access resources they should not. This flaw can potentially lead to some information disclosure, a slight risk of data modification, and a minimal chance of denial of service. Proper mitigation measures should be implemented to safeguard against these risks.

Affected Version(s)

NVIDIA Jetson TX1 All Jetson Linux versions prior to r32.5.1

References

CVSS V3.1

Score:
3.9
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.