CVE-2021-1111

Bootloader contains a vulnerability in the NV3P server where any user with physical access through USB can trigger an incorrect bounds check, which may lead to buffer overflow, resulting in limited information disclosure, limited data integrity, and denial of service across all components.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:nvidia:jetson_linux:*:*:*:*:*:*:*:*
OR cpe:2.3:h:nvidia:jetson_agx_xavier:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:jetson_tx2:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:jetson_tx2_nx:-:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:jetson_xavier_nx:-:*:*:*:*:*:*:*

History

21 Nov 2024, 05:43

Type Values Removed Values Added
References () https://nvidia.custhelp.com/app/answers/detail/a_id/5216 - Vendor Advisory () https://nvidia.custhelp.com/app/answers/detail/a_id/5216 - Vendor Advisory

Information

Published : 2021-08-11 22:15

Updated : 2024-11-21 05:43


NVD link : CVE-2021-1111

Mitre link : CVE-2021-1111

CVE.ORG link : CVE-2021-1111


JSON object : View

Products Affected

nvidia

  • jetson_tx2
  • jetson_agx_xavier
  • jetson_xavier_nx
  • jetson_tx2_nx
  • jetson_linux
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-125

Out-of-bounds Read