First published: Thu Aug 08 2024(Updated: )
NVIDIA Jetson Linux contains a vulnerability in NvGPU where error handling paths in GPU MMU mapping code fail to clean up a failed mapping attempt. A successful exploit of this vulnerability may lead to denial of service, code execution, and escalation of privileges.
Credit: psirt@nvidia.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
NVIDIA Linux for Tegra | <32.7.5 | |
Any of | ||
NVIDIA Jetson AGX Xavier 16GB | ||
NVIDIA Jetson AGX Xavier | ||
NVIDIA Jetson AGX Xavier | ||
NVIDIA Jetson AGX Xavier | ||
NVIDIA Jetson AGX Xavier | ||
NVIDIA Jetson AGX Xavier | ||
NVIDIA Jetson Nano | ||
NVIDIA Jetson Nano | ||
NVIDIA Jetson Nano | ||
NVIDIA Jetson Nano 2GB | ||
NVIDIA Jetson TX1 L4T | ||
NVIDIA Jetson TX1 L4T | ||
NVIDIA Jetson TX2 4GB | ||
NVIDIA Jetson TX2 4GB | ||
NVIDIA Jetson TX2 NX | ||
NVIDIA Jetson TX2i | ||
NVIDIA Jetson AGX Xavier | ||
NVIDIA Jetson AGX Xavier | ||
NVIDIA Jetson AGX Xavier | ||
NVIDIA Jetson AGX Xavier |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-0108 has a high severity rating due to its potential to cause denial of service, code execution, and privilege escalation.
To fix CVE-2024-0108, update NVIDIA Jetson Linux to the latest version that addresses this vulnerability.
CVE-2024-0108 affects NVIDIA Jetson Linux versions up to 32.7.5 but does not affect specific Jetson hardware like AGX Xavier and Nano devices.
CVE-2024-0108 is a memory management vulnerability in the GPU's error handling paths.
Yes, CVE-2024-0108 can potentially be exploited remotely, leading to significant security risks.