CVE-2021-34394
6.7
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.8 / Impact: 5.9
Source: NVD
Description
Trusty contains a vulnerability in the NVIDIA OTE protocol that is present in all TAs. An incorrect message stream deserialization allows an attacker to use the malicious CA that is run by the user to cause the buffer overflow, which may lead to information disclosure and data modification.
Affected (1)
Products: Nvidia: Jetson Linux
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 32.5.1 |
| Running on/with | Platform Versions |
|---|---|
Nvidia Jetson Agx Xavier 16gb | All versions |
Nvidia Jetson Agx Xavier 32gb | All versions |
Nvidia Jetson Agx Xavier 8gb | All versions |
Nvidia Jetson Tx2 | All versions |
Nvidia Jetson Tx2 4gb | All versions |
Nvidia Jetson Tx2 Nx | All versions |
Nvidia Jetson Tx2i | All versions |
Nvidia Jetson Xavier Nx | All versions |
References (2)
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.