Out-of-Bounds Write Vulnerability in NVIDIA DGX Spark Firmware
CVE-2026-24262
8.2HIGH
What is CVE-2026-24262?
NVIDIA DGX Spark contains a vulnerability in its system firmware that allows a privileged attacker to execute an out-of-bounds write. If exploited, this could lead to various severe consequences, including unauthorized code execution, escalation of privileges, denial of service, unauthorized information disclosure, and potential data tampering. Organizations using NVIDIA DGX Spark should prioritize remediation to mitigate any associated security risks.
Affected Version(s)
DGX Spark UEFI 0 to 1.110.12