cbcvebase.
CVE-2026-24148
published 2026-03-31

CVE-2026-24148: NVIDIA Jetson for JetPack contains a vulnerability in the system initialization logic, where an unprivileged attacker could cause the initialization of a…

critical9.4CVSS 3.1
AVNACLPRNUINSUCHIHAL
NVIDIA Jetson for JetPack contains a vulnerability in the system initialization logic, where an unprivileged attacker could cause the initialization of a resource with an insecure default. A successful exploit of this vulnerability might lead to information disclosure of encrypted data, data tampering, and partial denial of service across devices sharing the same machine ID.

Affected

4 ranges
VendorProductVersion rangeFixed in
nvidiajetson_linux< 35.6.435.6.4
nvidiajetson_linux>= 36.0 < 36.536.5
nvidiajetson_xavier_series_and_jetson_orin_series
nvidiajetson_xavier_series_and_jetson_orin_series