7.8
CVE-2021-1106
- EPSS 0.11%
- Veröffentlicht 11.08.2021 22:15:07
- Zuletzt bearbeitet 21.11.2024 05:43:36
- Quelle psirt@nvidia.com
- Teams Watchlist Login
- Unerledigt Login
NVIDIA Linux kernel distributions contain a vulnerability in nvmap, where writes may be allowed to read-only buffers, which may result in escalation of privileges, complete denial of service, unconstrained information disclosure, and serious data tampering of all processes on the system.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Nvidia ≫ Jetson Linux Version >= 32.1 < 32.6.1
Nvidia ≫ Jetson Agx Xavier Version-
Nvidia ≫ Jetson Nano Version-
Nvidia ≫ Jetson Nano 2gb Version-
Nvidia ≫ Jetson Tx1 Version-
Nvidia ≫ Jetson Tx2 Version-
Nvidia ≫ Jetson Tx2 Nx Version-
Nvidia ≫ Jetson Xavier Nx Version-
Nvidia ≫ Jetson Nano Version-
Nvidia ≫ Jetson Nano 2gb Version-
Nvidia ≫ Jetson Tx1 Version-
Nvidia ≫ Jetson Tx2 Version-
Nvidia ≫ Jetson Tx2 Nx Version-
Nvidia ≫ Jetson Xavier Nx Version-
Nvidia ≫ Shield Experience Version < 9.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.11% | 0.304 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
nvd@nist.gov | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|
psirt@nvidia.com | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.