← Vulnerability feed

Vulnerability record · CVE-2019-5679 · published 6 August 2019

CVE-2019-5679: Nvidia shield experience improper authentication vulnerability

Nvidia · Shield Experience

NVIDIA Shield TV Experience prior to v8.0, NVIDIA Tegra bootloader contains a vulnerability in nvtboot where the Trusted OS image is improperly authenticated, which may lead to code execution, denial of service, escalation of privileges, and information disclosure, code execution, denial of service, or escalation of privileges

7.8 CVSS 3.0 High EPSS 0.40% · top 68.8% CWE-287 · Improper authentication
7.8CVSS 3.0 base score, v2 7.2
0.40%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

NVIDIA Shield TV Experience prior to v8.0, NVIDIA Tegra bootloader contains a vulnerability in nvtboot where the Trusted OS image is improperly authenticated, which may lead to code execution, denial of service, escalation of privileges, and information disclosure, code execution, denial of service, or escalation of privileges

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2019-5679 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2021-34401Nvidia shield experience improper access control vulnerabilityNVIDIA Linux kernel distributions contain a vulnerability in nvmap NVGPU_IOCTL_CHANNEL_SET_ERROR_NOTIFIER, where improper access control may lead to …EPSS 0.30%7.8CVE-2021-34403Nvidia shield experience use after free vulnerabilityNVIDIA Linux distributions contain a vulnerability in nvmap ioctl, which allows any user with a local account to exploit a use-after-free condition, …EPSS 0.30%7.8CVE-2021-1107Nvidia jetson linux vulnerabilityNVIDIA Linux kernel distributions contain a vulnerability in nvmap NVMAP_IOC_WRITE* paths, where improper access controls may lead to code execution,…EPSS 0.28%7.8CVE-2021-1106Nvidia jetson linux out-of-bounds write vulnerabilityNVIDIA Linux kernel distributions contain a vulnerability in nvmap, where writes may be allowed to read-only buffers, which may result in escalation …EPSS 0.26%7.8CVE-2021-1068Nvidia shield experience out-of-bounds read vulnerabilityNVIDIA SHIELD TV, all versions prior to 8.2.2, contains a vulnerability in the NVDEC component, in which an attacker can read from or write to a memo…EPSS 0.37%7.8CVE-2019-5700Nvidia shield experience improper input validation vulnerabilityNVIDIA Shield TV Experience prior to v8.0.1, NVIDIA Tegra software contains a vulnerability in the bootloader, where it does not validate the fields …EPSS 0.67%7.8CVE-2019-5699Nvidia shield experience memory buffer overflow vulnerabilityNVIDIA Shield TV Experience prior to v8.0.1, NVIDIA Tegra bootloader contains a vulnerability where the software performs an incorrect bounds check, …EPSS 0.48%7.8CVE-2019-5681Nvidia shield experience vulnerabilityNVIDIA Shield TV Experience prior to v8.0, contains a vulnerability in the custom NVIDIA API used in the mount system service where user data could b…EPSS 0.46%

Source: NIST National Vulnerability Database (record CVE-2019-5679), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.