NVIDIA Jetson Linux contains a vulnerability in UEFI, where improper authentication may allow a privileged user to cause corruption of the Linux Device Tree. A successful exploitation of this vulnerability might lead to data tampering, denial of service.
History

Tue, 21 Oct 2025 09:45:00 +0000

Type Values Removed Values Added
First Time appeared Nvidia
Nvidia jetson Agx Xavier
Nvidia jetson Linux
Nvidia jetson Tk1
Nvidia jetson Tx1
Nvidia jetson Tx2
Nvidia jetson Xavier Nx
Vendors & Products Nvidia
Nvidia jetson Agx Xavier
Nvidia jetson Linux
Nvidia jetson Tk1
Nvidia jetson Tx1
Nvidia jetson Tx2
Nvidia jetson Xavier Nx

Tue, 14 Oct 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 14 Oct 2025 19:15:00 +0000

Type Values Removed Values Added
Description NVIDIA Jetson Linux contains a vulnerability in UEFI, where improper authentication may allow a privileged user to cause corruption of the Linux Device Tree. A successful exploitation of this vulnerability might lead to data tampering, denial of service.
Weaknesses CWE-862
References
Metrics cvssV3_1

{'score': 7.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: nvidia

Published: 2025-10-14T19:09:39.664Z

Updated: 2025-10-14T19:57:06.742Z

Reserved: 2025-04-15T18:51:02.257Z

Link: CVE-2025-33182

cve-icon Vulnrichment

Updated: 2025-10-14T19:57:04.164Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-10-14T19:15:40.193

Modified: 2025-10-14T19:35:56.913

Link: CVE-2025-33182

cve-icon Redhat

No data.