First published: Wed Jan 20 2021(Updated: )
NVIDIA SHIELD TV, all versions prior to 8.2.2, contains a vulnerability in the implementation of the RPMB command status, in which an attacker can write to the Write Protect Configuration Block, which may lead to denial of service or escalation of privileges.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
NVIDIA shield experience | <8.2.2 | |
Google Android | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-1067 is considered high due to its potential for privilege escalation and denial of service.
To fix CVE-2021-1067, update your NVIDIA SHIELD TV to version 8.2.2 or later.
All versions of NVIDIA SHIELD TV prior to 8.2.2 are affected by CVE-2021-1067.
CVE-2021-1067 primarily concerns local exploitation, but it could be leveraged in broader attack scenarios under certain conditions.
CVE-2021-1067 can lead to attacks resulting in denial of service or escalation of privileges.