CVE-2021-34382

MEDIUM

NVIDIA Jetson Linux < 32.5.1 - Integer Overflow in Trusty TLK tz_map_shared_mem Function

Title source: llm
STIX 2.1

Description

Trusty TLK contains a vulnerability in the NVIDIA TLK kernel’s tz_map_shared_mem function where an integer overflow on the size parameter causes the request buffer and the logging buffer to overflow, allowing writes to arbitrary addresses within the kernel.

References (1)

Core 1
Core References
Vendor Advisory x_refsource_confirm
https://nvidia.custhelp.com/app/answers/detail/a_id/5205

Scores

CVSS v3 6.7
EPSS 0.0006
EPSS Percentile 18.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-190
Status published
Products (1)
nvidia/jetson_linux < 32.5.1
Published Jun 30, 2021
Tracked Since Feb 18, 2026