NVIDIA Jetson Linux Driver Package contains a vulnerability in the Cboot module tegrabl_cbo.c, where, if TFTP is enabled, a local attacker with elevated privileges can cause a memory buffer overflow, which may lead to code execution, loss of Integrity, limited denial of service, and some impact to confidentiality.
2022-04-27T18:15:07.983
2024-11-21T06:56:55.650
Modified
CVSSv3.1: 7.3 (HIGH)
AV:L/AC:M/Au:N/C:P/I:P/A:P
3.4
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | nvidia | jetson_linux | < 32.7.2 | Yes |
Hardware | nvidia | jetson_agx_xavier | - | No |
Hardware | nvidia | jetson_xavier_nx | - | No |