Tampering Vulnerability in NVIDIA DGX Spark GB10 Hardware Controls
CVE-2025-33188

8HIGH

Key Information:

Vendor

Nvidia

Status
Vendor
CVE Published:
25 November 2025

What is CVE-2025-33188?

The NVIDIA DGX Spark GB10 has a vulnerability that allows an attacker to tamper with hardware controls. If successfully exploited, this issue may lead to unauthorized information access, data integrity compromise, or even denial of service conditions, potentially affecting the overall reliability of the system.

Affected Version(s)

DGX Spark NVIDIA DGX OS All versions prior to OTA0

References

CVSS V3.1

Score:
8
Severity:
HIGH
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-33188 : Tampering Vulnerability in NVIDIA DGX Spark GB10 Hardware Controls