CVE-2021-34394: Buffer Overflow
Trusty contains a vulnerability in the NVIDIA OTE protocol that is present in all TAs. An incorrect message stream deserialization allows an attacker to use the malicious CA that is run by the user to cause the buffer overflow, which may lead to information disclosure and data modification.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-34394?
CVE-2021-34394 is a vulnerability in Trusty's NVIDIA OTE protocol that allows an attacker to cause a buffer overflow, leading to information disclosure and data modification.
Which software is affected by CVE-2021-34394?
The vulnerability affects NVIDIA Jetson Linux up to version 32.5.1.
How severe is CVE-2021-34394?
CVE-2021-34394 has a severity rating of 6.7 (medium).
How can the CVE-2021-34394 vulnerability be exploited?
The vulnerability can be exploited by sending an incorrect message stream to the Trusty NVIDIA OTE protocol, causing a buffer overflow.
Is Nvidia Jetson Agx Xavier 16gb vulnerable to CVE-2021-34394?
No, Nvidia Jetson Agx Xavier 16gb is not vulnerable to CVE-2021-34394.