CVE List

CVE-2025-33195

Moderate 4.4

NVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware, where an attacker could cause unexpected memory buffer operations. A successful exploit of this vulnerability might lead to data tampering, denial of service, or escalation of privileges.

Published November 25, 2025.

Affected software

Get alerts for Nvidia Dgx OS

Reference links