CVE-2021-34404

HIGH

NVIDIA Shield Experience < 9.0 - Denial of Service and Integrity Impact via BROM AHB-DMA Access

Title source: llm
STIX 2.1

Description

Android images for T210 provided by NVIDIA contain a vulnerability in BROM, where failure to limit access to AHB-DMA when BROM fails may allow an unprivileged attacker with physical access to cause denial of service or impact integrity and confidentiality beyond the security scope of BROM.

References (1)

Core 1
Core References
Vendor Advisory x_refsource_confirm
https://nvidia.custhelp.com/app/answers/detail/a_id/5259

Scores

CVSS v3 7.1
EPSS 0.0005
EPSS Percentile 15.4%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H

Details

Status published
Products (1)
nvidia/shield_experience < 9.0
Published Jan 18, 2022
Tracked Since Feb 18, 2026