Critical severity9.1NVD Advisory· Published Apr 11, 2019· Updated Jun 17, 2026
CVE-2019-5672
CVE-2019-5672
Description
NVIDIA Jetson TX1 and TX2 contain a vulnerability in the Linux for Tegra (L4T) operating system (on all versions prior to R28.3) where the Secure Shell (SSH) keys provided in the sample rootfs are not replaced by unique host keys after sample rootsfs generation and flashing, which may lead to information disclosure.
Affected products
6cpe:2.3:a:nvidia:jetson_tx1:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:nvidia:jetson_tx1:*:*:*:*:*:*:*:*range: <r28.3
- (no CPE)range: <R28.3
cpe:2.3:a:nvidia:jetson_tx2:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:nvidia:jetson_tx2:*:*:*:*:*:*:*:*range: <r28.3
- (no CPE)range: <R28.3
- Range: <R28.3
- Range: All versions prior to version R28.3
Patches
Vulnerability mechanics
References
1- nvidia.custhelp.com/app/answers/detail/a_id/4787nvdVendor Advisory
News mentions
0No linked articles in our index yet.