Access Control Vulnerability in NVIDIA Bootloader
CVE-2021-34396

3LOW

Key Information:

Vendor
Nvidia
Vendor
CVE Published:
22 June 2021

Summary

The NVIDIA bootloader has a security issue related to access permission settings that could allow unauthorized software to overwrite the MB2 code. This vulnerability could lead to potential disruptions in service, exposing the system to further exploitation.

Affected Version(s)

NVIDIA Jetson TX2 series, TX2 NX All Jetson Linux versions prior to r32.5.1

References

CVSS V3.1

Score:
3
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.