Security Advisory

CVE-2022-28197

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-04-27 17:57:53
Last updated 2024-08-03 05:48:37
Assigner nvidia
State PUBLISHED

Description

NVIDIA Jetson Linux Driver Package contains a vulnerability in the Cboot ext4_mount function, where Insufficient validation of untrusted data may allow a highly privileged local attacker to cause an integer overflow. This difficult-to-exploit vulnerability may lead to code execution, escalation of privileges, limited denial of service, and some impact to confidentiality and integrity. The scope of impact can extend to other components.