First published: Mon Feb 26 2018(Updated: )
NVIDIA Security Engine contains a vulnerability in the Deterministic Random Bit Generator (DRBG) where the DRBG does not properly initialize and store or transmits sensitive data using a weakened encryption scheme that is unable to protect sensitive data which may lead to information disclosure.This issue is rated as moderate.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nvidia Shield Tv Firmware | <=6.2 | |
Nvidia Shield Tv | ||
Google Android |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this NVIDIA Security Engine vulnerability is CVE-2017-6284.
The severity of CVE-2017-6284 is medium with a severity value of 5.5.
Nvidia Shield Tv Firmware up to version 6.2 and Google Android are affected by CVE-2017-6284.
The vulnerability in the Deterministic Random Bit Generator (DRBG) of the NVIDIA Security Engine allows for the improper initialization and storage or transmission of sensitive data, leading to potential information disclosure.
To fix CVE-2017-6284, NVIDIA recommends updating to the latest version of Nvidia Shield Tv Firmware and Google Android when available.