VYPR

Jetson Linux

by Nvidia

CVEs (54)

  • CVE-2021-1108HigAug 11, 2021
    risk 0.47cvss 7.3epss 0.00

    NVIDIA Linux kernel distributions contain a vulnerability in FuSa Capture (VI/ISP), where integer underflow due to lack of input validation may lead to complete denial of service, partial integrity, and serious confidentiality loss for all processes in the system.

  • CVE-2025-23270HigJul 17, 2025
    risk 0.46cvss 7.1epss 0.00

    NVIDIA Jetson Linux contains a vulnerability in UEFI Management mode, where an unprivileged local attacker may cause exposure of sensitive information via a side channel vulnerability. A successful exploit of this vulnerability might lead to code execution, data tampering,…

  • CVE-2023-25518HigJun 23, 2023
    risk 0.46cvss 7.1epss 0.00

    NVIDIA Jetson contains a vulnerability in CBoot, where the PCIe controller is initialized without IOMMU, which may allow an attacker with physical access to the target device to read and write to arbitrary memory. A successful exploit of this vulnerability may lead to code…

  • CVE-2021-1110HigAug 11, 2021
    risk 0.46cvss 7.1epss 0.00

    NVIDIA Linux kernel distributions on Jetson Xavier contain a vulnerability in camera firmware where a user can change input data after validation, which may lead to complete denial of service and serious data corruption of all kernel components.

  • CVE-2021-34380HigJun 30, 2021
    risk 0.46cvss 7.0epss 0.00

    Bootloader contains a vulnerability in NVIDIA MB2 where potential heap overflow might cause corruption of the heap metadata, which might lead to arbitrary code execution, denial of service, and information disclosure during secure boot.

  • CVE-2021-1111MedAug 11, 2021
    risk 0.44cvss 6.7epss 0.00

    Bootloader contains a vulnerability in the NV3P server where any user with physical access through USB can trigger an incorrect bounds check, which may lead to buffer overflow, resulting in limited information disclosure, limited data integrity, and denial of service across all…

  • CVE-2021-34382MedJun 30, 2021
    risk 0.44cvss 6.7epss 0.00

    Trusty TLK contains a vulnerability in the NVIDIA TLK kernel’s tz_map_shared_mem function where an integer overflow on the size parameter causes the request buffer and the logging buffer to overflow, allowing writes to arbitrary addresses within the kernel.

  • CVE-2021-34381MedJun 30, 2021
    risk 0.44cvss 6.7epss 0.00

    Trusty TLK contains a vulnerability in the NVIDIA TLK kernel function where a lack of checks allows the exploitation of an integer overflow on the size parameter of the tz_map_shared_mem function, which might lead to denial of service, information disclosure, or data tampering.

  • CVE-2021-34383MedJun 30, 2021
    risk 0.42cvss 6.4epss 0.00

    Bootloader contains a vulnerability in NVIDIA MB2 where a potential heap overflow might lead to denial of service or escalation of privileges.

  • CVE-2021-34385MedJun 30, 2021
    risk 0.41cvss 6.3epss 0.00

    Trusty TLK contains a vulnerability in the NVIDIA TLK kernel where an integer overflow in the calculation of a length could lead to a heap overflow.

  • CVE-2021-34384MedJun 30, 2021
    risk 0.41cvss 6.3epss 0.00

    Bootloader contains a vulnerability in NVIDIA MB2 where a potential heap overflow could cause memory corruption, which might lead to denial of service or code execution.

  • CVE-2021-34388MedJun 21, 2021
    risk 0.41cvss 6.3epss 0.00

    Bootloader contains a vulnerability in NVIDIA TegraBoot where a potential heap overflow might allow an attacker to control all the RAM after the heap block, leading to denial of service or code execution.

  • CVE-2021-34387MedJun 21, 2021
    risk 0.41cvss 6.3epss 0.00

    The ARM TrustZone Technology on which Trusty is based on contains a vulnerability in access permission settings where the portion of the DRAM reserved for TrustZone is identity-mapped by TLK with read, write, and execute permissions, which gives write access to kernel code and…

  • CVE-2021-34386MedJun 21, 2021
    risk 0.41cvss 6.3epss 0.00

    Trusty TLK contains a vulnerability in the NVIDIA TLK kernel where an integer overflow in the calloc size calculation can cause the multiplication of count and size can overflow, which might lead to heap overflows.

  • CVE-2022-28195MedApr 27, 2022
    risk 0.37cvss 5.7epss 0.00

    NVIDIA Jetson Linux Driver Package contains a vulnerability in the Cboot ext4_read_file function, where insufficient validation of untrusted data may allow a highly privileged local attacker to cause a integer overflow, which may lead to code execution, escalation of privileges,…

  • CVE-2025-33177MedOct 14, 2025
    risk 0.36cvss 5.5epss 0.00

    NVIDIA Jetson Linux and IGX OS contain a vulnerability in NvMap, where improper tracking of memory allocations could allow a local attacker to cause memory overallocation. A successful exploitation of this vulnerability might lead to denial of service.

  • CVE-2022-28193MedApr 27, 2022
    risk 0.36cvss 5.6epss 0.00

    NVIDIA Jetson Linux Driver Package contains a vulnerability in the Cboot module tegrabl_cbo.c, where insufficient validation of untrusted data may allow a local attacker with elevated privileges to cause a memory buffer overflow, which may lead to code execution, loss of…

  • CVE-2021-1112MedAug 11, 2021
    risk 0.36cvss 5.5epss 0.00

    NVIDIA Linux kernel distributions contain a vulnerability in nvmap, where a null pointer dereference may lead to complete denial of service.

  • CVE-2026-24153MedMar 31, 2026
    risk 0.34cvss 5.2epss 0.00

    NVIDIA Jetson Linux has a vulnerability in initrd, where the nvluks trusted application is not disabled. A successful exploit of this vulnerability might lead to information disclosure.

  • CVE-2021-34391MedJun 22, 2021
    risk 0.34cvss 5.3epss 0.00

    Trusty contains a vulnerability in the NVIDIA TLK kernel function where a lack of checks allows the exploitation of an integer overflow through a specific SMC call that is triggered by the user, which may lead to denial of service.