cbcvebase.

Nvidia Corporation Android vulnerabilities

38 known vulnerabilities affecting nvidia_corporation/android.

Total CVEs
38
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH28MEDIUM9LOW1

Vulnerabilities

Page 1 of 2
CVE-2017-0307P3HIGHCVSS 7.8vKernel-3.182017-03-08
CVE-2017-0307 [HIGH] CWE-190 CVE-2017-0307: An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious appl An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Ve
nvd
CVE-2017-0306P3HIGHCVSS 7.8vKernel-3.102017-03-08
CVE-2017-0306 [HIGH] CWE-120 CVE-2017-0306: An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious appl An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Ve
nvd
CVE-2017-0338P3HIGHCVSS 7.8vKernel-3.182017-03-08
CVE-2017-0338 [HIGH] CVE-2017-0338: An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious appl An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Versions:
nvd
CVE-2017-0333P3HIGHCVSS 7.8vKernel-3.182017-03-08
CVE-2017-0333 [HIGH] CVE-2017-0333: An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious appl An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Versions:
nvd
CVE-2017-0337P3HIGHCVSS 7.8vKernel-3.182017-03-08
CVE-2017-0337 [HIGH] CVE-2017-0337: An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious appl An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Versions:
nvd
CVE-2017-0335P3HIGHCVSS 7.8vKernel-3.182017-03-08
CVE-2017-0335 [HIGH] CVE-2017-0335: An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious appl An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Versions:
nvd
CVE-2017-6264P3HIGHCVSS 7.8vN/A2017-11-14
CVE-2017-6264 [HIGH] CWE-125 CVE-2017-6264: An elevation of privilege vulnerability exists in the NVIDIA GPU driver (gm20b_clk_throt_set_cdev_st An elevation of privilege vulnerability exists in the NVIDIA GPU driver (gm20b_clk_throt_set_cdev_state), where an out of bound memory read is used as a function pointer could lead to code execution in the kernel.This issue is rated as high because it could allow a local malicious application to execute arbitrary code within the context of a privileged
nvd
CVE-2017-0340P3HIGHCVSS 7.8vNA2017-07-07
CVE-2017-0340 [HIGH] CWE-119 CVE-2017-0340: An elevation of privilege vulnerability in the NVIDIA Libnvparser component due to a memcpy into a f An elevation of privilege vulnerability in the NVIDIA Libnvparser component due to a memcpy into a fixed sized buffer with a user-controlled size could lead to a memory corruption and possible remote code execution. This issue is rated as High. Product: Android. Version: N/A. Android ID: A-33968204. References: N-CVE-2017-0340.
nvd
CVE-2017-6247P3HIGHCVSS 7.8vNA2017-07-06
CVE-2017-6247 [HIGH] CVE-2017-6247: An elevation of privilege vulnerability in the NVIDIA sound driver could enable a local malicious ap An elevation of privilege vulnerability in the NVIDIA sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High due to the possibility of local arbitrary code execution in a privileged process in the kernel. Product: Android. Versions: N/A. Android ID: A-34386301. References:
nvd
CVE-2018-6241P3HIGHCVSS 7.8vN/A2019-01-31
CVE-2018-6241 [HIGH] CWE-20 CVE-2018-6241: NVIDIA Tegra Gralloc module contains a vulnerability in driver in which it does not validate input p NVIDIA Tegra Gralloc module contains a vulnerability in driver in which it does not validate input parameter of the registerbuffer API, which may lead to arbitrary code execution, denial of service, or escalation of privileges. Android ID: A-62540032 Severity Rating: High Version: N/A.
nvd
CVE-2017-6263P3HIGHCVSS 7.8vNA2017-12-06
CVE-2017-6263 [HIGH] CWE-416 CVE-2017-6263: NVIDIA driver contains a vulnerability where it is possible a use after free malfunction can occur d NVIDIA driver contains a vulnerability where it is possible a use after free malfunction can occur due to improper usage of the list_for_each kernel macro which could enable unauthorized code execution and possibly lead to elevation of privileges. This issue is rated as high. Product: Android. Version: N/A. Android ID: A-38046353. References: N-CVE-2017
nvd
CVE-2017-6289P3HIGHCVSS 7.8vNA2018-05-10
CVE-2017-6289 [HIGH] CWE-119 CVE-2017-6289: In Android before the 2018-05-05 security patch level, NVIDIA Trusted Execution Environment (TEE) co In Android before the 2018-05-05 security patch level, NVIDIA Trusted Execution Environment (TEE) contains a memory corruption (due to unusual root cause) vulnerability, which if run within the speculative execution of the TEE, may lead to local escalation of privileges. This issue is rated as critical. Android: A-72830049. Reference: N-CVE-2017-6289.
nvd
CVE-2017-6276P3HIGHCVSS 7.8vNA2017-12-06
CVE-2017-6276 [HIGH] CWE-416 CVE-2017-6276: NVIDIA mediaserver contains a vulnerability where it is possible a use after free malfunction can oc NVIDIA mediaserver contains a vulnerability where it is possible a use after free malfunction can occur due to an incorrect bounds check which could enable unauthorized code execution and possibly lead to elevation of privileges. This issue is rated as high. Product: Android. Version: N/A. Android: A-63802421. References: N-CVE-2017-6276.
nvd
CVE-2017-6258P3HIGHCVSS 7.8vNA2018-02-06
CVE-2017-6258 [HIGH] CWE-787 CVE-2017-6258: NVIDIA libnvmmlite_audio.so contains an elevation of privilege vulnerability when running in media s NVIDIA libnvmmlite_audio.so contains an elevation of privilege vulnerability when running in media server which may cause an out of bounds write and could lead to local code execution in a privileged process. This issue is rated as high. Product: Android. Version: N/A. Android: A-38027496. Reference: N-CVE-2017-6258.
nvd
CVE-2017-6279P3HIGHCVSS 7.8vNA2018-02-06
CVE-2017-6279 [HIGH] CWE-787 CVE-2017-6279: NVIDIA libnvmmlite_audio.so contains an elevation of privilege vulnerability when running in media s NVIDIA libnvmmlite_audio.so contains an elevation of privilege vulnerability when running in media server which may cause an out of bounds write and could lead to local code execution in a privileged process. This issue is rated as high. Product: Android. Version: N/A. Android: A-65023166. Reference: N-CVE-2017-6279.
nvd
CVE-2018-6267P3HIGHCVSS 7.8vn/a2019-02-13
CVE-2018-6267 [HIGH] CWE-20 CVE-2018-6267: NVIDIA Tegra OpenMax driver (libnvomx) contains a vulnerability in which the software does not valid NVIDIA Tegra OpenMax driver (libnvomx) contains a vulnerability in which the software does not validate or incorrectly validates input that can affect the control flow or data flow of a program, which may lead to denial of service or escalation of privileges. Android ID: A-70857947.
nvd
CVE-2017-6293P3HIGHCVSS 7.8vNA2018-05-10
CVE-2017-6293 [HIGH] CWE-787 CVE-2017-6293: In Android before the 2018-05-05 security patch level, NVIDIA Tegra X1 TZ contains a vulnerability i In Android before the 2018-05-05 security patch level, NVIDIA Tegra X1 TZ contains a vulnerability in Widevine TA where the software writes data past the end, or before the beginning, of the intended buffer, which may lead to escalation of Privileges. This issue is rated as high. Android: A-69377364. Reference: N-CVE-2017-6293.
nvd
CVE-2017-6286P3HIGHCVSS 7.8vNA2018-03-12
CVE-2017-6286 [HIGH] CWE-787 CVE-2017-6286: NVIDIA libnvomx contains a possible out of bounds write due to a missing bounds check which could le NVIDIA libnvomx contains a possible out of bounds write due to a missing bounds check which could lead to local escalation of privilege. This issue is rated as high. Product: Android. Version: N/A. Android: A-64893247. Reference: N-CVE-2017-6286.
nvd
CVE-2017-6281P4HIGHCVSS 7.8vNA2018-03-12
CVE-2017-6281 [HIGH] CWE-20 CVE-2017-6281: NVIDIA libnvomx contains a possible out of bounds write due to a improper input validation which cou NVIDIA libnvomx contains a possible out of bounds write due to a improper input validation which could lead to local escalation of privilege. This issue is rated as high. Product: Android. Version: N/A. Android: A-66969318. Reference: N-CVE-2017-6281.
nvd
CVE-2018-6271P4HIGHCVSS 7.8vn/a2019-02-13
CVE-2018-6271 [HIGH] CWE-119 CVE-2018-6271: NVIDIA Tegra OpenMax driver (libnvomx) contains a vulnerability in which the software delivers extra NVIDIA Tegra OpenMax driver (libnvomx) contains a vulnerability in which the software delivers extra data with the buffer and does not properly validated the extra data, which may lead to denial of service or escalation of privileges. Android ID: A-80198474.
nvd
Nvidia Corporation Android vulnerabilities | cvebase