CVE-2021-34404 HIGH

CVE-2021-34404

Vendor Nvidia
Product SHIELD TV
Published January 18, 2022
Last update August 4, 2024

CVSS base score

7.1/10
Attack vector Physical
Attack complexity High
Privileges required None
User interaction None
Confidentiality High
Integrity High

CVSS vector

CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H

What the vulnerability does

01Description

Android images for T210 provided by NVIDIA contain a vulnerability in BROM, where failure to limit access to AHB-DMA when BROM fails may allow an unprivileged attacker with physical access to cause denial of service or impact integrity and confidentiality beyond the security scope of BROM.

Key dates

02Disclosure timeline

January 18, 2022 CVE published
August 4, 2024 Record updated