CVE-2021-34403

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
18/01/2022
Last modified:
25/01/2022

Description

NVIDIA Linux distributions contain a vulnerability in nvmap ioctl, which allows any user with a local account to exploit a use-after-free condition, leading to code privilege escalation, loss of confidentiality and integrity, or denial of service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:nvidia:shield_experience:*:*:*:*:*:*:*:* 9.0 (excluding)
cpe:2.3:o:google:android:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools