NVIDIA Jetson Linux Driver Package contains a vulnerability in the Cboot blob_decompress function, where insufficient validation of untrusted data may allow a local attacker with elevated privileges to cause a memory buffer overflow, which may lead to code execution, limited loss of Integrity, and limited denial of service. The scope of impact can extend to other components.
Subscriptions
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-32650 | NVIDIA Jetson Linux Driver Package contains a vulnerability in the Cboot blob_decompress function, where insufficient validation of untrusted data may allow a local attacker with elevated privileges to cause a memory buffer overflow, which may lead to code execution, limited loss of Integrity, and limited denial of service. The scope of impact can extend to other components. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://nvidia.custhelp.com/app/answers/detail/a_id/5343 |
|
History
No history.
Status: PUBLISHED
Assigner: nvidia
Published:
Updated: 2024-08-03T05:48:37.325Z
Reserved: 2022-03-30T00:00:00.000Z
Link: CVE-2022-28196
No data.
Status : Modified
Published: 2022-04-27T18:15:08.097
Modified: 2024-11-21T06:56:55.917
Link: CVE-2022-28196
No data.
OpenCVE Enrichment
No data.
EUVD