Vulnerability Description
NVIDIA Jetson Linux has a vulnerability in initrd, where the nvluks trusted application is not disabled. A successful exploit of this vulnerability might lead to information disclosure.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Nvidia | Jetson Linux | < 35.6.4 |
| Nvidia | Jetson Agx Orin 32Gb | - |
| Nvidia | Jetson Agx Orin 64Gb | - |
| Nvidia | Jetson Agx Orin Developer Kit | - |
| Nvidia | Jetson Agx Orin Industrial | - |
| Nvidia | Jetson Agx Thor Developer Kit | - |
| Nvidia | Jetson Agx Xavier 32Gb | - |
| Nvidia | Jetson Agx Xavier 64Gb | - |
| Nvidia | Jetson Agx Xavier Industrial | - |
| Nvidia | Jetson Orin Nano 4Gb | - |
| Nvidia | Jetson Orin Nano 8Gb | - |
| Nvidia | Jetson Orin Nano Super Developer Kit | - |
| Nvidia | Jetson Orin Nx 16Gb | - |
| Nvidia | Jetson Orin Nx 8Gb | - |
| Nvidia | Jetson T4000 | - |
| Nvidia | Jetson T5000 | - |
| Nvidia | Jetson Xavier Nx 16Gb | - |
| Nvidia | Jetson Xavier Nx 8Gb | - |
Related Weaknesses (CWE)
References
- https://nvd.nist.gov/vuln/detail/CVE-2026-24153Third Party AdvisoryUS Government Resource
- https://nvidia.custhelp.com/app/answers/detail/a_id/5797Vendor Advisory
- https://www.cve.org/CVERecord?id=CVE-2026-24153Third Party Advisory
FAQ
What is CVE-2026-24153?
CVE-2026-24153 is a vulnerability with a CVSS score of 5.2 (MEDIUM). NVIDIA Jetson Linux has a vulnerability in initrd, where the nvluks trusted application is not disabled. A successful exploit of this vulnerability might lead to information disclosure.
How severe is CVE-2026-24153?
CVE-2026-24153 has been rated MEDIUM with a CVSS base score of 5.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-24153?
Check the references section above for vendor advisories and patch information. Affected products include: Nvidia Jetson Linux, Nvidia Jetson Agx Orin 32Gb, Nvidia Jetson Agx Orin 64Gb, Nvidia Jetson Agx Orin Developer Kit, Nvidia Jetson Agx Orin Industrial.