2025-02-16 03:03:51 +00:00

60 lines
2.1 KiB
JSON

{
"id": "CVE-2024-0112",
"sourceIdentifier": "psirt@nvidia.com",
"published": "2025-02-12T00:15:08.263",
"lastModified": "2025-02-12T00:15:08.263",
"vulnStatus": "Awaiting Analysis",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "NVIDIA Jetson AGX Orin\u2122 and NVIDIA IGX Orin software contain a vulnerability where an attacker can cause an improper input validation issue by escalating certain permissions to a limited degree. A successful exploit of this vulnerability might lead to code execution, denial of service, data corruption, information disclosure, or escalation of privilege."
},
{
"lang": "es",
"value": "El software NVIDIA Jetson AGX Orin\u2122 y NVIDIA IGX Orin contiene una vulnerabilidad que permite a un atacante provocar un problema de validaci\u00f3n de entrada incorrecto al aumentar ciertos permisos hasta cierto punto. Una explotaci\u00f3n exitosa de esta vulnerabilidad podr\u00eda provocar la ejecuci\u00f3n de c\u00f3digo, la denegaci\u00f3n de servicio, la corrupci\u00f3n de datos, la divulgaci\u00f3n de informaci\u00f3n o la ampliaci\u00f3n de privilegios."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "psirt@nvidia.com",
"type": "Secondary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H",
"baseScore": 7.5,
"baseSeverity": "HIGH",
"attackVector": "LOCAL",
"attackComplexity": "HIGH",
"privilegesRequired": "HIGH",
"userInteraction": "NONE",
"scope": "CHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"availabilityImpact": "HIGH"
},
"exploitabilityScore": 0.8,
"impactScore": 6.0
}
]
},
"weaknesses": [
{
"source": "psirt@nvidia.com",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-20"
}
]
}
],
"references": [
{
"url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5611",
"source": "psirt@nvidia.com"
}
]
}