Vulnerabilities > Nvidia > Jetson Linux > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-08-11 CVE-2021-1110 Improper Input Validation vulnerability in Nvidia Jetson Linux
NVIDIA Linux kernel distributions on Jetson Xavier contain a vulnerability in camera firmware where a user can change input data after validation, which may lead to complete denial of service and serious data corruption of all kernel components.
local
low complexity
nvidia CWE-20
6.6
2021-08-11 CVE-2021-1111 Out-of-bounds Read vulnerability in Nvidia Jetson Linux
Bootloader contains a vulnerability in the NV3P server where any user with physical access through USB can trigger an incorrect bounds check, which may lead to buffer overflow, resulting in limited information disclosure, limited data integrity, and denial of service across all components.
local
low complexity
nvidia CWE-125
4.6
2021-08-11 CVE-2021-1112 NULL Pointer Dereference vulnerability in Nvidia Jetson Linux
NVIDIA Linux kernel distributions contain a vulnerability in nvmap, where a null pointer dereference may lead to complete denial of service.
local
low complexity
nvidia CWE-476
4.9
2021-08-11 CVE-2021-1113 Unspecified vulnerability in Nvidia Jetson Linux
NVIDIA camera firmware contains a difficult to exploit vulnerability where a highly privileged attacker can cause unauthorized modification to camera resources, which may result in complete denial of service and partial loss of data integrity for all clients.
local
nvidia
5.4
2021-08-11 CVE-2021-1114 Use After Free vulnerability in Nvidia Jetson Linux
NVIDIA Linux kernel distributions contain a vulnerability in the kernel crypto node, where use after free may lead to complete denial of service.
local
low complexity
nvidia CWE-416
4.9
2021-06-30 CVE-2021-34374 Improper Input Validation vulnerability in Nvidia Jetson Linux
Trusty contains a vulnerability in command handlers where the length of input buffers is not verified.
local
low complexity
nvidia CWE-20
4.6
2021-06-30 CVE-2021-34375 Out-of-bounds Write vulnerability in Nvidia Jetson Linux
Trusty contains a vulnerability in all trusted applications (TAs) where the stack cookie was not randomized, which might result in stack-based buffer overflow, leading to denial of service, escalation of privileges, and information disclosure.
local
low complexity
nvidia CWE-787
4.6
2021-06-30 CVE-2021-34376 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Nvidia Jetson Linux
Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 5 is missing.
local
low complexity
nvidia CWE-119
4.6
2021-06-30 CVE-2021-34377 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Nvidia Jetson Linux
Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 9 is missing.
local
low complexity
nvidia CWE-119
4.6
2021-06-30 CVE-2021-34378 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Nvidia Jetson Linux
Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 11 is missing.
local
low complexity
nvidia CWE-119
4.6