cd /news/ai-safety/nvidia-security-bulletin-for-sept-30… · home › topics › ai-safety › article
[ARTICLE · art-142652] src=gamingonlinux.com ↗ pub= topic=ai-safety verified=true sentiment=↓ negative

NVIDIA security bulletin for Sept 30 notes many GPU issues

NVIDIA published a September 30 security bulletin listing numerous high-severity vulnerabilities in its GPU display drivers, with the Linux driver affected by at least six CVEs rated 7.8 High, including CVE-2026-47489, CVE-2026-47491, CVE-2026-47494, CVE-2026-47500, CVE-2026-47501 and CVE-2026-47502. NVIDIA lists the patched driver versions as 615.71.09, 610.57.04, 595.91.07 and 580.178.04, and users on earlier releases in those series are advised to update. The bulletin's volume prompted GamingOnLinux to suggest increased AI-assisted vulnerability discovery may be behind the surge, similar to the wave of AI-generated reports that led Canonical to speed up Ubuntu kernel security updates.

by read27 min views1 publishedSep 30, 2026
NVIDIA security bulletin for Sept 30 notes many GPU issues
Image: Gamingonlinux (auto-discovered)

NVIDIA released a fresh security bulletin for September 30th that notes quite a lot of issues that have been found in their graphics drivers. You're really going to want to ensure you're up to date this time, I was pretty shocked to see the list enter the GamingOnLinux inbox today.

This is the most I've ever seen in one go. Possibly as a result of more AI being used to track down issues. Like we've also seen for the Linux kernel which has caused Canonical to speed up Ubuntu kernel updates.

Since it's a long list, firstly here's the safe GPU driver versions: 615.71.09, 610.57.04, 595.91.07, 580.178.04. If you have any in those driver series below those versions numbers - it's time to update.

Here's all the issues below that affect the Linux GPU driver (I removed some that are just Windows issues):

CVE ID Description Base Score Severity Impacts
CVE-2026-47489 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where permissions on read-only memory might not be preserved. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47491 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user can cause improper release of memory resources, leaving a mapping accessible after the underlying memory is reused. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47494 NVIDIA GPU Display Driver for Linux contains a vulnerability where a user might be able to cause a format string issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47500 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where improper cleanup of reference counts during error paths could lead to a use-after-free condition. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47501 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could cause an out-of-bounds write by supplying mismatched memory buffers during event buffer setup. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47502 NVIDIA vGPU Virtual GPU Manager for Windows and Linux contains a vulnerability in the kernel mode layer, where a guest user could cause an integer overflow leading to memory corruption. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47504 NVIDIA Linux GPU Display Driver contains a vulnerability in the NGX updater where an outdated embedded cryptographic library is susceptible to type confusion. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, or data tampering. 7.8 High Code execution, data tampering, denial of service, information disclosure
CVE-2026-47507 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could cause an out-of-bounds array access. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47508 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could cause an incorrect conversion between numeric types. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47510 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could cause an integer overflow leading to an out-of-bounds write to GPU memory. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47511 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47512 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could cause an out-of-bounds read leading to kernel information disclosure. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47513 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could cause an out-of-bounds read from kernel heap memory. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47514 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could cause exposure of kernel stack contents including return addresses and pointers. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47516 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where an unprivileged user could cause a use-after-free. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47523 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47528 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the firmware where an attacker could cause an access of an uninitialized pointer. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47530 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47540 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause an integer underflow. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47545 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47548 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47551 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where a user could cause a use-after-free. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47552 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could bypass an authorization check and modify privileged configuration. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47553 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an unprivileged user could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47556 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an unprivileged user could cause an integer overflow that leads to an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47558 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could cause a double-free of imported memory state. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47559 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could access memory belonging to another user's process. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47560 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could cause a use-after-free. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47561 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where the size of an ioctl input buffer is not validated, allowing an unprivileged caller to trigger an out-of-bounds write in kernel memory. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47563 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could cause a NULL pointer dereference. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47569 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could cause a type confusion via a handle recycle race. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47572 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could cause type confusion. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47587 NVIDIA GPU Display Driver for Linux contains a vulnerability where an unprivileged user could cause a use-after-free. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, information disclosure, and data tampering 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47588 NVIDIA GPU Display Driver for Linux contains a vulnerability where an unprivileged user could cause a use-after-free condition by issuing a sequence of driver commands. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service and information disclosure. 7.8 High Code execution, escalation of privileges, denial of service, information disclosure
CVE-2026-47589 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where an unprivileged user may cause a use-after-free condition by issuing a sequence of driver commands. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, and information disclosure 7.8 High Code execution, escalation of privileges, denial of service, information disclosure
CVE-2026-47590 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where an unprivileged user may cause a use-after-free condition by issuing a sequence of driver commands. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, and information disclosure. 7.8 High Code execution, escalation of privileges, denial of service, information disclosure
CVE-2026-47591 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could bypass read-only memory protection due to incorrect authorization, enabling write access to memory marked read-only. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47592 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an unprivileged user could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47594 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where an unprivileged user may cause a use-after-free condition by issuing a sequence of driver commands. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, data tampering, and information disclosure. 7.8 High Code execution, escalation of privileges, denial of service, information disclosure, data tampering
CVE-2026-47595 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user can write to read-only memory because the memory's permissions are not preserved. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47599 NVIDIA GPU Display Driver for Linux contains a vulnerability in the open-source kernel module where an unprivileged local user could cause improper preservation of memory access permissions during DMA mapping. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47600 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an error-handling path could operate on an improperly initialized resource. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47601 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the open-source kernel module DMA-BUF import path where an unprivileged local user could cause improper preservation of memory access permissions when importing a read-only buffer from another device's DMA-BUF exporter. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, information disclosure, and data tampering. 7.8 High Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47596 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user can write to read-only memory because the memory's permissions are not preserved. A successful exploit of this vulnerability might lead to code execution and escalation of privileges 7.0 High Code execution, escalation of privileges
CVE-2026-47554 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where improper verification of cryptographic signatures may cause signature verification to be bypassed under memory pressure. A successful exploit of this vulnerability might lead to denial of service and data tampering. 7.1 High Data tampering, denial of service
CVE-2026-47602 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode driver where a local user can cause the driver to dereference an untrusted pointer. A successful exploit of this vulnerability might lead to denial of service and information disclosure. 7.1 High Information disclosure, denial of service
CVE-2026-47598 NVIDIA GPU Display Driver for Linux contains a vulnerability in the open-source kernel module event delivery path where an unprivileged local user could cause a use-after-free through a race between asynchronous event delivery and file close. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, information disclosure, and data tampering. 7.0 High Denial of service, escalation of privileges, information disclosure, data tampering, code execution
CVE-2026-47509 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47515 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could cause an out-of-bounds read via an unbounded string operation. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47522 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause improper input validation. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47524 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47525 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause an improper validation of an array index. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47527 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the firmware where an attacker could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47529 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47532 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47533 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause an improper validation of an array index. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47537 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47538 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the firmware where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47542 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause improper input validation. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47543 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause improper input validation. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47546 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the firmware where an attacker could cause improper input validation. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47547 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the firmware where an attacker could cause improper input validation. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.7 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47565 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a privileged user could trigger a race condition that leads to an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.4 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47586 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel module where an attacker could cause a use-after-free. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. 6.4 Medium Code execution, escalation of privileges, data tampering, denial of service, information disclosure
CVE-2026-47518 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in a secure microcontroller component, where incorrect permission assignment for a critical resource allows an attacker with privileged local access to modify protected memory that should be restricted. A successful exploit of this vulnerability might lead to code execution and escalation of privileges 6.0 Medium Code execution, escalation of privileges
CVE-2026-47492 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an attacker can cause improper access control. A successful exploit of this vulnerability might lead to denial of service. 5.5 Medium Denial of service
CVE-2026-47517 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode driver where a local user may cause a null pointer dereference by submitting a crafted ioctl. A successful exploit of this vulnerability might lead to denial of service. 5.5 Medium Denial of service
CVE-2026-47534 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause a divide by zero. A successful exploit of this vulnerability might lead to denial of service. 5.5 Medium Denial of service
CVE-2026-47549 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel module where an unprivileged local user could cause a NULL pointer dereference. A successful exploit of this vulnerability might lead to denial of service. 5.5 Medium Denial of service
CVE-2026-47555 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where a user could cause uninitialized kernel memory to be copied back to userspace. A successful exploit of this vulnerability might lead to information disclosure. 5.5 Medium Information disclosure
CVE-2026-47557 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could cause a NULL pointer dereference. A successful exploit of this vulnerability might lead to denial of service. 5.5 Medium Denial of service
CVE-2026-47566 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could cause a memory leak in error paths leading to kernel memory exhaustion. A successful exploit of this vulnerability might lead to denial of service. 5.5 Medium Denial of service
CVE-2026-47567 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where a user could cause uncontrolled resource consumption by exhausting the DRM VMA offset address space. A successful exploit of this vulnerability might lead to denial of service. 5.5 Medium Denial of service
CVE-2026-47568 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could cause uncontrolled kernel log generation by repeatedly invoking an interface that emits unrate-limited error messages. A successful exploit of this vulnerability might lead to denial of service. 5.5 Medium Denial of service
CVE-2026-47603 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode driver where a local user may access another process's GPU channel state due to missing authorization checks. A successful exploit of this vulnerability might lead to information disclosure. 5.5 Medium Information disclosure
CVE-2026-47604 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode driver where a local user may access another process's GPU channel state due to missing authorization checks. A successful exploit of this vulnerability might lead to information disclosure. 5.5 Medium Information disclosure
CVE-2026-47526 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the firmware where an attacker could cause a null pointer dereference. A successful exploit of this vulnerability might lead to denial of service. 4.4 Medium Denial of service
CVE-2026-47531 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause a null pointer dereference. A successful exploit of this vulnerability might lead to denial of service. 4.4 Medium Denial of service
CVE-2026-47562 NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could inject crafted text into the kernel log because the supplied version string is not properly sanitized. A successful exploit of this vulnerability might lead to denial of service and data tampering. 4.4 Medium Data tampering, denial of service

External Sources:

nvidia.custhelp.com Some you may have missed, popular articles from the last month:

All posts need to

follow our rules. Please hit the Report Flag icon on any post that breaks the rules or contains illegal / harmful content. Readers can alsoemail usfor any issues or concerns.

── more in #ai-safety 4 stories · sorted by recency
── more on @nvidia 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
→ Live at https://your-agent.zahid.host ✓
Get free account → Pricing
from €0/mo · no card required
LIVE [news/nvidia-security-bull…] indexed:0 read:27min 2026-09-30 · —