CVE-2021-1070 Information
Jun 07, 2022
cve
Description
NVIDIA Jetson AGX Xavier Series Jetson Xavier NX TX1 TX2 Nano and Nano 2GB L4T versions prior to 32.5 contains a vulnerability in the apply_binaries.sh script used to install NVIDIA components into the root file system image in which improper access control is applied which may lead to an unprivileged user being able to modify system device tree files leading to denial of service.
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Reference
https://nvidia.custhelp.com/app/answers/detail/a_id/5147
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
NONE
Availability Impact
HIGH
Base Score
HIGH
Base Severity
7.1
Share on: