CVE-2025-33187: Critical severity Nvidia DGX Spark vulnerability
NVIDIA DGX Spark GB10 contains a vulnerability in SROOT, where an attacker could use privileged access to gain access to SoC protected areas. A successful exploit of this vulnerability might lead to code execution, information disclosure, data tampering, denial of service, or escalation of privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-33187?
CVE-2025-33187 has a high severity rating due to its potential for code execution and privilege escalation.
How do I fix CVE-2025-33187?
To fix CVE-2025-33187, ensure that you apply the latest security patches provided by NVIDIA for DGX Spark.
What are the potential consequences of exploiting CVE-2025-33187?
Exploiting CVE-2025-33187 could lead to code execution, information disclosure, data tampering, denial of service, or privilege escalation.
Who is affected by CVE-2025-33187?
CVE-2025-33187 affects users of NVIDIA DGX Spark systems with vulnerable configurations.
Is CVE-2025-33187 actively being exploited in the wild?
As of now, there is no confirmed evidence that CVE-2025-33187 is being actively exploited in the wild.