CVE-2021-1071: Medium severity nvidia vibrante linux vulnerability
Published Jan 26, 2021
·Updated
NVIDIA Tegra kernel in Jetson AGX Xavier Series, Jetson Xavier NX, TX1, TX2, Nano and Nano 2GB, all L4T versions prior to r32.5, contains a vulnerability in the INA3221 driver in which improper access control may lead to unauthorized users gaining access to system power usage data, which may lead to information disclosure.
Affected Software
7 affected components
Nvidia Linux For Tegra<r32.5
Nvidia Jetson AGX Xavier
Nvidia Jetson Nano
Nvidia Jetson Nano 2gb
Nvidia Jetson TX1
Nvidia Jetson TX2
Nvidia Jetson Xavier NX
Event History
Jan 26, 2021
CVE Published
via MITRE·09:20 PM
Data Sourced
via MITRE·09:20 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2021-1071?
CVE-2021-1071 is a vulnerability in the NVIDIA Tegra kernel in Jetson AGX Xavier Series, Jetson Xavier NX, TX1, TX2, Nano and Nano 2GB.
2
How does CVE-2021-1071 affect the affected software?
CVE-2021-1071 allows unauthorized users to gain access to system power usage data.
3
What is the severity of CVE-2021-1071?
CVE-2021-1071 has a severity rating of 5.5 (medium).
4
How can I fix CVE-2021-1071?
To fix CVE-2021-1071, update your NVIDIA Tegra kernel to version r32.5 or higher.
5
Where can I find more information about CVE-2021-1071?
You can find more information about CVE-2021-1071 on the NVIDIA website.