Vulnerabilities > Nvidia > Low

DATE CVE VULNERABILITY TITLE RISK
2021-06-30 CVE-2021-34373 Out-of-bounds Write vulnerability in Nvidia Jetson Linux
Trusty trusted Linux kernel (TLK) contains a vulnerability in the NVIDIA TLK kernel where a lack of heap hardening could cause heap overflows, which might lead to information disclosure and denial of service.
local
low complexity
nvidia CWE-787
3.6
2021-06-22 CVE-2021-34397 Out-of-bounds Write vulnerability in Nvidia Jetson Linux
Bootloader contains a vulnerability in NVIDIA MB2, which may cause free-the-wrong-heap, which may lead to limited denial of service.
local
low complexity
nvidia CWE-787
2.1
2021-06-22 CVE-2021-34396 Unspecified vulnerability in Nvidia Jetson Linux
Bootloader contains a vulnerability in access permission settings where unauthorized software may be able to overwrite NVIDIA MB2 code, which would result in limited denial of service.
local
low complexity
nvidia
2.1
2021-06-22 CVE-2021-34393 Deserialization of Untrusted Data vulnerability in Nvidia Jetson Linux
Trusty contains a vulnerability in TSEC TA which deserializes the incoming messages even though the TSEC TA does not expose any command.
local
low complexity
nvidia CWE-502
2.1
2021-06-22 CVE-2021-34392 Integer Overflow or Wraparound vulnerability in Nvidia Jetson Linux
Trusty TLK contains a vulnerability in the NVIDIA TLK kernel where an integer overflow in the tz_map_shared_mem function can bypass boundary checks, which might lead to denial of service.
local
low complexity
nvidia CWE-190
2.1
2021-06-22 CVE-2021-34390 Integer Overflow or Wraparound vulnerability in Nvidia Jetson Linux
Trusty contains a vulnerability in the NVIDIA TLK kernel function where a lack of checks allows the exploitation of an integer overflow through a specific SMC call that is triggered by the user, which may lead to denial of service.
local
low complexity
nvidia CWE-190
2.1
2021-06-21 CVE-2021-34389 Memory Leak vulnerability in Nvidia Jetson Linux
Trusty contains a vulnerability in NVIDIA OTE protocol message parsing code, which is present in all the TAs.
local
nvidia CWE-401
1.9
2021-04-29 CVE-2021-1087 Information Exposure vulnerability in Nvidia Virtual GPU Manager
NVIDIA vGPU driver contains a vulnerability in the Virtual GPU Manager (vGPU plugin), which could allow an attacker to retrieve information that could lead to a Address Space Layout Randomization (ASLR) bypass.
local
low complexity
nvidia CWE-200
2.1
2021-04-20 CVE-2021-1079 Unspecified vulnerability in Nvidia Geforce Experience
NVIDIA GeForce Experience, all versions prior to 3.22, contains a vulnerability in GameStream plugins where log files are created using NT/System level permissions, which may lead to code execution, denial of service, or local privilege escalation.
local
low complexity
nvidia
3.6
2021-02-05 CVE-2021-1072 Unspecified vulnerability in Nvidia Geforce Experience
NVIDIA GeForce Experience, all versions prior to 3.21, contains a vulnerability in GameStream (rxdiag.dll) where an arbitrary file deletion due to improper handling of log files may lead to denial of service.
local
low complexity
nvidia
3.6