cbcvebase.
CVE-2021-1111
published 2021-08-11

CVE-2021-1111: Bootloader contains a vulnerability in the NV3P server where any user with physical access through USB can trigger an incorrect bounds check, which may lead to…

PriorityP423medium6.7CVSS 3.1
AVPACLPRNUINSCCLILAH
EPSS
0.28%
20.1th percentile
Bootloader contains a vulnerability in the NV3P server where any user with physical access through USB can trigger an incorrect bounds check, which may lead to buffer overflow, resulting in limited information disclosure, limited data integrity, and denial of service across all components.

Affected

1 ranges
VendorProductVersion rangeFixed in
nvidiajetson_linux>= 32.1 < 32.6.132.6.1

CVSS provenance

nvdv3.16.7MEDIUMCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.