Security Advisory

CVE-2024-0148

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-02-25 20:11:21
Last updated 2025-02-25 21:20:53
Assigner nvidia
State PUBLISHED

Description

NVIDIA Jetson Linux and IGX OS image contains a vulnerability in the UEFI firmware RCM boot mode, where an unprivileged attacker with physical access to the device could load untrusted code. A successful exploit might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure. The scope of the impacts can extend to other components.