CVE-2025-33192: Medium severity Nvidia DGX Spark vulnerability
NVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware, where an attacker could cause an arbitrary memory read. A successful exploit of this vulnerability might lead to denial of service.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-33192?
CVE-2025-33192 has the potential for a high severity as it enables arbitrary memory read, which could lead to denial of service.
How do I fix CVE-2025-33192?
To mitigate CVE-2025-33192, update the SROOT firmware of your NVIDIA DGX Spark to the latest version provided by NVIDIA.
What could an attacker achieve by exploiting CVE-2025-33192?
An attacker exploiting CVE-2025-33192 could cause arbitrary memory read, potentially leading to a denial of service.
Is my NVIDIA DGX Spark affected by CVE-2025-33192?
If you are using NVIDIA DGX Spark, you are affected by CVE-2025-33192, and you should take action to mitigate it.
What type of vulnerability is CVE-2025-33192?
CVE-2025-33192 is a firmware vulnerability that allows unauthorized access to arbitrary memory on the NVIDIA DGX Spark.