VYPR

Trusty

by Nvidia

CVEs (6)

  • CVE-2021-34372HigJun 22, 2021
    risk 0.53cvss 8.2epss 0.00

    Trusty (the trusted OS produced by NVIDIA for Jetson devices) driver contains a vulnerability in the NVIDIA OTE protocol message parsing code where an integer overflow in a malloc() size calculation leads to a buffer overflow on the heap, which might result in information…

  • CVE-2021-34379HigJun 30, 2021
    risk 0.50cvss 7.7epss 0.00

    Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 10 is missing. The length of an I/O buffer parameter is not checked, which might lead to memory corruption.

  • CVE-2021-34378HigJun 30, 2021
    risk 0.50cvss 7.7epss 0.00

    Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 11 is missing. Improper restriction of operations within the bounds of a memory buffer might lead to information disclosure, denial of service, or escalation of privileges.

  • CVE-2021-34377HigJun 30, 2021
    risk 0.50cvss 7.7epss 0.00

    Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 9 is missing. Improper restriction of operations within the bounds of a memory buffer might lead to escalation of privileges, information disclosure, and denial of service.

  • CVE-2021-34376HigJun 30, 2021
    risk 0.50cvss 7.7epss 0.00

    Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 5 is missing. Improper restriction of operations within the bounds of a memory buffer might lead to denial of service, escalation of privileges, and information disclosure.

  • CVE-2021-34375HigJun 30, 2021
    risk 0.50cvss 7.7epss 0.00

    Trusty contains a vulnerability in all trusted applications (TAs) where the stack cookie was not randomized, which might result in stack-based buffer overflow, leading to denial of service, escalation of privileges, and information disclosure.