First published: Tue Jan 18 2022(Updated: )
NVIDIA Linux distributions contain a vulnerability in TrustZone’s TEE_Malloc function, where an unchecked return value causing a null pointer dereference may lead to denial of service.
Credit: psirt@nvidia.com psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nvidia Shield Experience | <9.0 | |
Google Android |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this NVIDIA Linux vulnerability is CVE-2021-34405.
The severity of CVE-2021-34405 is medium, with a severity value of 5.5.
The affected software for CVE-2021-34405 is Nvidia Shield Experience 9.0.
This vulnerability in TrustZone's TEE_Malloc function may lead to denial of service.
No, Google Android is not vulnerable to CVE-2021-34405.
Please refer to the official NVIDIA advisory at <a href="https://nvidia.custhelp.com/app/answers/detail/a_id/5259">https://nvidia.custhelp.com/app/answers/detail/a_id/5259</a> for guidance on how to address this vulnerability.