CVE-2025-33189 - NVIDIA DGX Spark GB10 SROOT Firmware Out-of-Bound Write Vulnerability

CVE-2025-33189 - NVIDIA DGX Spark GB10 SROOT Firmware Out-of-Bound Write Vulnerability

CVE ID : CVE-2025-33189 Published : Nov. 25, 2025, 6:15 p.m. | 30 minutes ago Description : NVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware, where an attacker could cause an out-of-bound write. A successful exploit of this vulnerability might lead to code execution, data tampering, denial of service, information disclosure, or escalation of privileges. Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
Nov. 25, 2025
Impact: code execution

Source: Telegram CVE Monitor