CVE-2024-0108
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
08/08/2024
Last modified:
16/09/2024
Description
NVIDIA Jetson Linux contains a vulnerability in NvGPU where error handling paths in GPU MMU mapping code fail to clean up a failed mapping attempt. A successful exploit of this vulnerability may lead to denial of service, code execution, and escalation of privileges.
Impact
Base Score 3.x
8.80
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:nvidia:jetson_linux:*:*:*:*:*:*:*:* | 32.7.5 (excluding) | |
| cpe:2.3:h:nvidia:jetson_agx_xavier:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:nvidia:jetson_agx_xavier_16gb:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:nvidia:jetson_agx_xavier_32gb:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:nvidia:jetson_agx_xavier_64gb:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:nvidia:jetson_agx_xavier_8gb:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:nvidia:jetson_agx_xavier_industrial:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:nvidia:jetson_nano:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:nvidia:jetson_nano:-:*:-:*:*:*:*:* | ||
| cpe:2.3:h:nvidia:jetson_nano:-:*:developer_kit:*:*:*:*:* | ||
| cpe:2.3:h:nvidia:jetson_nano_2gb:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:nvidia:jetson_tx1:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:nvidia:jetson_tx1_l4t:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:nvidia:jetson_tx2:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:nvidia:jetson_tx2_4gb:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



