← Back

CVE-2021-34389

nvd nist
Published: Jun 21, 2021Modified: Nov 21, 2024

JSON object

Loading...
5.0
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N
Exploitability: 1.3 / Impact: 3.6
Source: NVD

Description

Trusty contains a vulnerability in NVIDIA OTE protocol message parsing code, which is present in all the TAs. An incorrect bounds check can allow a local user through a malicious client to access memory from the heap in the TrustZone, which may lead to information disclosure.

Affected (1)

Products: Nvidia: Jetson Linux
1 product
Jetson Linux
Configuration A
1 vulnerable · 9 platform
Vulnerable SoftwareAffected Versions
Before 32.5.1
Running on/withPlatform Versions
Nvidia
Jetson Agx Xavier 16gb
All versions
Nvidia
Jetson Agx Xavier 32gb
All versions
Nvidia
Jetson Agx Xavier 8gb
All versions
Nvidia
Jetson Tx2
All versions
Nvidia
Jetson Tx2 4gb
All versions
Nvidia
Jetson Tx2 Nx
All versions
Nvidia
Jetson Tx2i
All versions
Nvidia
Jetson Xavier Nx
All versions
Nvidia
Jetson Xavier Nx
All versions

References (2)

Source: psirt@nvidia.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.