NVIDIA DGX Spark SROOT Firmware Memory Buffer Vulnerability
Vulnerability
A vulnerability exists in the SROOT firmware of NVIDIA DGX Spark GB10, allowing an attacker to manipulate memory buffer operations. Exploitation of this vulnerability could result in unauthorized data modification, service disruption, or privilege escalation.
Impact
Successful exploitation may lead to data tampering, denial of service, or unauthorized privilege escalation.
Remediation
Users are advised to update to the latest version of NVIDIA DGX OS, available on the NVIDIA DGX product page.
Added: Nov 25, 2025, 6:26 PM
Updated: Nov 25, 2025, 10:45 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
7.5exploitability
3.3remediation
7.7relevance
1.2threat
0.0urgency
2.9incentive
1.7Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
