PT-2019-17811 · Nvidia · Nvidia Jetson Tx1 L4T

Published

2019-07-19

·

Updated

2019-07-24

·

CVE-2019-5680

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NVIDIA Jetson TX1 L4T versions prior to R32.2
Description The issue is related to the Tegra bootloader in the nvtboot component, where the nvtboot-cpu image is loaded without validating the load address first. This could potentially lead to code execution, denial of service, or escalation of privileges.
Recommendations For versions prior to R32.2, update to version R32.2 or later to resolve the issue.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-5680

Affected Products

Nvidia Jetson Tx1 L4T