CVE-2021-34402

NVIDIA Tegra kernel driver contains a vulnerability in NVIDIA NVDEC, where a user with high privileges might be able to read from or write to a memory location that is outside the intended boundary of the buffer, which may lead to denial of service, Information disclosure, loss of Integrity, or possible escalation of privileges.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:nvidia:shield_experience:*:*:*:*:*:*:*:*
cpe:2.3:o:google:android:-:*:*:*:*:*:*:*

History

24 Oct 2022, 16:39

Type Values Removed Values Added
CWE CWE-119 CWE-787
CWE-125

26 Jan 2022, 15:23

Type Values Removed Values Added
References (CONFIRM) https://nvidia.custhelp.com/app/answers/detail/a_id/5259 - (CONFIRM) https://nvidia.custhelp.com/app/answers/detail/a_id/5259 - Vendor Advisory
CPE cpe:2.3:o:google:android:-:*:*:*:*:*:*:*
cpe:2.3:a:nvidia:shield_experience:*:*:*:*:*:*:*:*
CWE CWE-119
First Time Google
Google android
Nvidia shield Experience
Nvidia
CVSS v2 : unknown
v3 : unknown
v2 : 4.6
v3 : 6.7

18 Jan 2022, 18:28

Type Values Removed Values Added
New CVE

Information

Published : 2022-01-18 18:15

Updated : 2023-12-10 14:09


NVD link : CVE-2021-34402

Mitre link : CVE-2021-34402

CVE.ORG link : CVE-2021-34402


JSON object : View

Products Affected

google

  • android

nvidia

  • shield_experience
CWE
CWE-125

Out-of-bounds Read

CWE-787

Out-of-bounds Write

CWE-284

Improper Access Control