7.8
CVE-2021-1106
- EPSS 0.11%
- Published 11.08.2021 22:15:07
- Last modified 21.11.2024 05:43:36
- Source psirt@nvidia.com
- Teams watchlist Login
- Open Login
NVIDIA Linux kernel distributions contain a vulnerability in nvmap, where writes may be allowed to read-only buffers, which may result in escalation of privileges, complete denial of service, unconstrained information disclosure, and serious data tampering of all processes on the system.
Data is provided by the National Vulnerability Database (NVD)
Nvidia ≫ Jetson Linux Version >= 32.1 < 32.6.1
Nvidia ≫ Jetson Agx Xavier Version-
Nvidia ≫ Jetson Nano Version-
Nvidia ≫ Jetson Nano 2gb Version-
Nvidia ≫ Jetson Tx1 Version-
Nvidia ≫ Jetson Tx2 Version-
Nvidia ≫ Jetson Tx2 Nx Version-
Nvidia ≫ Jetson Xavier Nx Version-
Nvidia ≫ Jetson Nano Version-
Nvidia ≫ Jetson Nano 2gb Version-
Nvidia ≫ Jetson Tx1 Version-
Nvidia ≫ Jetson Tx2 Version-
Nvidia ≫ Jetson Tx2 Nx Version-
Nvidia ≫ Jetson Xavier Nx Version-
Nvidia ≫ Shield Experience Version < 9.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.11% | 0.304 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
nvd@nist.gov | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|
psirt@nvidia.com | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.