7.6
CVSSv3

CVE-2022-21819

Published: 11/03/2022 Updated: 08/05/2024
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.6 | Impact Score: 6 | Exploitability Score: 0.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

NVIDIA distributions of Jetson Linux contain a vulnerability where an error in the IOMMU configuration may allow an unprivileged attacker with physical access to the board direct read/write access to the entire system address space through the PCI bus. Such an attack could result in denial of service, code execution, escalation of privileges, and impact to data integrity and confidentiality. The scope impact may extend to other components.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

nvidia jetson_linux

Github Repositories

Materials for my DMA attacks talk

DMA Attacks Materials for my "Introduction to PCIe and DMA attacks" talk Also see xairy/usb-hacking Last iteration of the talk: PHDays 2019 [slides] [video] Overview 2020: "DMA explained" [article] 2017: "Practical introduction to PCI Express with FPGAs" by Michal Husejko and John Evans [slides] 2017: "Introduction to PCI Express" by