Nvidia Linux For Tegra vulnerabilities
4 known vulnerabilities affecting nvidia/linux_for_tegra.
Total CVEs
4
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2021-1070HIGHCVSS 7.1fixed in r32.52021-01-26
CVE-2021-1070 [HIGH] CVE-2021-1070: NVIDIA Jetson AGX Xavier Series, Jetson Xavier NX, TX1, TX2, Nano and Nano 2GB, L4T versions prior t
NVIDIA Jetson AGX Xavier Series, Jetson Xavier NX, TX1, TX2, Nano and Nano 2GB, L4T versions prior to 32.5, contains a vulnerability in the apply_binaries.sh script used to install NVIDIA components into the root file system image, in which improper access control is applied, which may lead to an unprivileged user being able to modify system device tree files,
nvd
CVE-2021-1071MEDIUMCVSS 5.5fixed in r32.52021-01-26
CVE-2021-1071 [MEDIUM] CVE-2021-1071: NVIDIA Tegra kernel in Jetson AGX Xavier Series, Jetson Xavier NX, TX1, TX2, Nano and Nano 2GB, all
NVIDIA Tegra kernel in Jetson AGX Xavier Series, Jetson Xavier NX, TX1, TX2, Nano and Nano 2GB, all L4T versions prior to r32.5, contains a vulnerability in the INA3221 driver in which improper access control may lead to unauthorized users gaining access to system power usage data, which may lead to information disclosure.
nvd
CVE-2021-1069MEDIUMCVSS 6.1fixed in r32.52021-01-20
CVE-2021-1069 [MEDIUM] CWE-476 CVE-2021-1069: NVIDIA SHIELD TV, all versions prior to 8.2.2, contains a vulnerability in the NVHost function, whic
NVIDIA SHIELD TV, all versions prior to 8.2.2, contains a vulnerability in the NVHost function, which may lead to abnormal reboot due to a null pointer reference, causing data loss.
nvd
CVE-2017-14491CRITICALCVSS 9.8PoCfixed in r21.6fixed in r24.2.22017-10-04
CVE-2017-14491 [CRITICAL] CWE-787 CVE-2017-14491: Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of servi
Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response.
nvd