#VU62604 Buffer overflow in Jetson AGX Xavier series and Jetson Xavier NX - CVE-2022-28194
Published: April 26, 2022
Jetson AGX Xavier series
Jetson Xavier NX
nVidia
Description
The vulnerability allows a local attacker to escalate privileges on the system.
The vulnerability exists due to a boundary error in the Cboot module tegrabl_cbo.c. A local attacker with physical access to the system can trigger memory corruption and execute arbitrary code with elevated privileges.
Successful exploitation of the vulnerability requires that TFTP is enabled.