PT-2025-7914 · Nvidia+1 · Nvidia Jetson Linux+2

Published

2025-02-25

·

Updated

2025-02-28

·

CVE-2024-0148

CVSS v3.1

7.6

High

VectorAV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NVIDIA Jetson Linux and IGX OS (affected versions not specified)
Description The issue is related to a vulnerability in the UEFI firmware RCM boot mode. An unprivileged attacker with physical access to the device could potentially load untrusted code. A successful exploit might result in code execution, escalation of privileges, data tampering, denial of service, and information disclosure. The impacts of this issue can extend to other components.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2025-05902
CVE-2024-0148

Affected Products

Igx Os
Nvidia Jetson Linux
Uefi Firmware