First published: Wed Jun 30 2021(Updated: )
Bootloader contains a vulnerability in NVIDIA MB2 where a potential heap overflow could cause memory corruption, which might lead to denial of service or code execution.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
NVIDIA Linux for Tegra | <32.5.1 | |
NVIDIA Jetson AGX Xavier | ||
NVIDIA Jetson AGX Xavier | ||
NVIDIA Jetson AGX Xavier | ||
NVIDIA Jetson TX2 4GB | ||
NVIDIA Jetson TX2 4GB | ||
NVIDIA Jetson TX2 NX | ||
NVIDIA Jetson TX2i | ||
NVIDIA Jetson AGX Xavier |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this bootloader vulnerability is CVE-2021-34384.
The title of this bootloader vulnerability is 'Bootloader contains a vulnerability in NVIDIA MB2 where a potential heap overflow could cause memory…'
The description of this bootloader vulnerability is 'Bootloader contains a vulnerability in NVIDIA MB2 where a potential heap overflow could cause memory corruption, which might lead to denial of service or code execution.'
The software affected by this bootloader vulnerability is NVIDIA Jetson Linux up to version 32.5.1.
The severity of this bootloader vulnerability is high with a CVSS score of 7.8.
To fix this bootloader vulnerability, it is recommended to update NVIDIA Jetson Linux to a version higher than 32.5.1.
You can find more information about this bootloader vulnerability [here](https://nvidia.custhelp.com/app/answers/detail/a_id/5205).
The CWE ID associated with this bootloader vulnerability is 787.