CVE-2021-34382: Integer Overflow
Trusty TLK contains a vulnerability in the NVIDIA TLK kernel’s tzmapsharedmem function where an integer overflow on the size parameter causes the request buffer and the logging buffer to overflow, allowing writes to arbitrary addresses within the kernel.
Other sources
Trusty TLK contains a vulnerability in the NVIDIA TLK kernel’s tzmapsharedmem function where an integer overflow on the size parameter causes the request buffer and the logging buffer to overflow, allowing writes to arbitrary addresses within the kernel.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-34382?
CVE-2021-34382 is a vulnerability in the NVIDIA TLK kernel's tz_map_shared_mem function that allows writes to arbitrary addresses within the kernel.
What is the severity of CVE-2021-34382?
CVE-2021-34382 has a severity rating of 7.8 (high).
How does CVE-2021-34382 affect NVIDIA Jetson Linux?
CVE-2021-34382 affects NVIDIA Jetson Linux versions up to 32.5.1.
Is NVIDIA Jetson TX1 affected by CVE-2021-34382?
No, NVIDIA Jetson TX1 is not affected by CVE-2021-34382.
How can I fix CVE-2021-34382?
To fix CVE-2021-34382, update NVIDIA Jetson Linux to version 32.5.1 or higher.