Description
NVIDIA Jetson Linux Driver Package contains a vulnerability in the Cboot blob_decompress function, where insufficient validation of untrusted data may allow a local attacker with elevated privileges to cause a memory buffer overflow, which may lead to code execution, limited loss of Integrity, and limited denial of service. The scope of impact can extend to other components.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-32650 | NVIDIA Jetson Linux Driver Package contains a vulnerability in the Cboot blob_decompress function, where insufficient validation of untrusted data may allow a local attacker with elevated privileges to cause a memory buffer overflow, which may lead to code execution, limited loss of Integrity, and limited denial of service. The scope of impact can extend to other components. |
References
| Link | Providers |
|---|---|
| https://nvidia.custhelp.com/app/answers/detail/a_id/5343 |
|
History
No history.
Status: PUBLISHED
Assigner: nvidia
Published:
Updated: 2024-08-03T05:48:37.325Z
Reserved: 2022-03-30T00:00:00.000Z
Link: CVE-2022-28196
No data.
Status : Modified
Published: 2022-04-27T18:15:08.097
Modified: 2024-11-21T06:56:55.917
Link: CVE-2022-28196
No data.
OpenCVE Enrichment
No data.
EUVD