Description

NVIDIA has issued an urgent security update for its DGX Spark platform, a compact AI supercomputer widely used for local model development and research. The update addresses 14 vulnerabilities across firmware, hardware controls, and the Secure Root (SROOT) subsystem. One of these flaws is rated Critical and could allow attackers to bypass core protections and gain persistent, low-level control over the device. Organizations operating DGX Spark GB10 units for AI workloads or data science are strongly advised to update immediately to safeguard sensitive datasets and proprietary model assets. The most severe vulnerability, CVE-2025-33187 (CVSS 9.3), resides within the SROOT component. If an attacker gains privileged access—such as compromising a root account—they could pivot into protected SoC (System-on-Chip) regions. Successful exploitation enables arbitrary code execution, tampering with system data, and privilege escalation that can persist beyond the operating system. This poses a significant risk to AI researchers, as attackers could exfiltrate or subtly manipulate training data and model weights. Other high-severity flaws addressed in this update include CVE-2025-33188 (CVSS 8.0), which allows hardware resource tampering and may lead to data corruption or system disruption, and CVE-2025-33189 (CVSS 7.8), an out-of-bounds write issue within SROOT firmware that could trigger code execution or crashes. Additional medium and low-severity issues such as memory read errors (CVE-2025-33191) and NULL pointer dereferences (CVE-2025-33197) have also been resolved. NVIDIA has released a consolidated fix for all affected components. All DGX Spark GB10 units running DGX OS versions prior to OTA0 must be updated immediately. Leaving systems unpatched exposes them to severe compromise risks and potential long-term security impacts.