CVE-2021-34378: Buffer Overflow
Published Jun 30, 2021
·Updated
Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 11 is missing. Improper restriction of operations within the bounds of a memory buffer might lead to information disclosure, denial of service, or escalation of privileges.
Affected Software
9 affected components
Nvidia Jetson Linux<32.5.1
Nvidia Jetson Agx Xavier 16gb
Nvidia Jetson Agx Xavier 32gb
Nvidia Jetson Agx Xavier 8gb
Nvidia Jetson TX2
Nvidia Jetson Tx2 4gb
Nvidia Jetson Tx2 Nx
Nvidia Jetson Tx2i
Nvidia Jetson Xavier NX
Event History
Jun 30, 2021
CVE Published
via MITRE·10:24 AM
Data Sourced
via MITRE·10:24 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2021-34378.
2
What is the severity level of CVE-2021-34378?
The severity level of CVE-2021-34378 is high (6.7).
3
Which software is affected by CVE-2021-34378?
NVIDIA Jetson Linux up to version 32.5.1 is affected by CVE-2021-34378.
4
What is the impact of CVE-2021-34378?
CVE-2021-34378 may lead to information disclosure, denial of service, or escalation of privileges.
5
Is Nvidia Jetson Agx Xavier 16gb and other specified versions vulnerable to CVE-2021-34378?
No, Nvidia Jetson Agx Xavier 16gb and other specified versions are not vulnerable to CVE-2021-34378.