Unrated severityNVD Advisory· Published Jan 13, 2023· Updated Apr 7, 2025
CVE-2022-42285
CVE-2022-42285
Description
DGX A100 SBIOS contains a vulnerability in the Pre-EFI Initialization (PEI)phase, where a privileged user can disable SPI flash protection, which may lead to denial of service, escalation of privileges, or data tampering.
Affected products
2- NVIDIA/NVIDIA DGX serversv5Range: All SBIOS firmware versions prior to 1.18
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.