CVE-2021-34380: High severity nvidia linux for tegra vulnerability
Bootloader contains a vulnerability in NVIDIA MB2 where potential heap overflow might cause corruption of the heap metadata, which might lead to arbitrary code execution, denial of service, and information disclosure during secure boot.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this bootloader vulnerability?
The vulnerability ID for this bootloader vulnerability is CVE-2021-34380.
What is the affected software for this vulnerability?
The affected software for this vulnerability is NVIDIA Jetson Linux up to version 32.5.1.
What is the severity of CVE-2021-34380?
The severity of CVE-2021-34380 is high with a severity value of 7.8.
How can the vulnerability in NVIDIA MB2 be exploited?
The vulnerability in NVIDIA MB2 can be exploited through a potential heap overflow, leading to arbitrary code execution, denial of service, and information disclosure during secure boot.
How can I fix CVE-2021-34380?
To fix CVE-2021-34380, it is recommended to update to a version of NVIDIA Jetson Linux that is higher than 32.5.1.