CVE-2021-34389
5.0
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N
Exploitability: 1.3 / Impact: 3.6
Source: NVD
Description
Trusty contains a vulnerability in NVIDIA OTE protocol message parsing code, which is present in all the TAs. An incorrect bounds check can allow a local user through a malicious client to access memory from the heap in the TrustZone, which may lead to information disclosure.
Affected (1)
Products: Nvidia: Jetson Linux
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 32.5.1 |
| Running on/with | Platform Versions |
|---|---|
Nvidia Jetson Agx Xavier 16gb | All versions |
Nvidia Jetson Agx Xavier 32gb | All versions |
Nvidia Jetson Agx Xavier 8gb | All versions |
Nvidia Jetson Tx2 | All versions |
Nvidia Jetson Tx2 4gb | All versions |
Nvidia Jetson Tx2 Nx | All versions |
Nvidia Jetson Tx2i | All versions |
Nvidia Jetson Xavier Nx | All versions |
References (2)
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.