CVE-2026-24148
published 2026-03-31CVE-2026-24148: NVIDIA Jetson for JetPack contains a vulnerability in the system initialization logic, where an unprivileged attacker could cause the initialization of a…
critical9.4CVSS 3.1
AVNACLPRNUINSUCHIHAL
NVIDIA Jetson for JetPack contains a vulnerability in the system initialization logic, where an unprivileged attacker could cause the initialization of a resource with an insecure default. A successful exploit of this vulnerability might lead to information disclosure of encrypted data, data tampering, and partial denial of service across devices sharing the same machine ID.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| nvidia | jetson_linux | < 35.6.4 | 35.6.4 |
| nvidia | jetson_linux | >= 36.0 < 36.5 | 36.5 |
| nvidia | jetson_xavier_series_and_jetson_orin_series | — | — |
| nvidia | jetson_xavier_series_and_jetson_orin_series | — | — |