CVE-2026-47565

Summary

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a privileged user could trigger a race condition that leads to an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.

Affected Software

VendorProductVersion RangeStatus
NVIDIAGeForceAll driver versions prior to 615.71.09affected
NVIDIAGeForceAll driver versions prior to 610.57.04affected
NVIDIARTX, Quadro, NVSAll driver versions prior to 615.71.09affected
NVIDIARTX, Quadro, NVSAll driver versions prior to 610.57.04affected
NVIDIARTX, Quadro, NVSAll driver versions prior to 595.91.07affected
NVIDIARTX, Quadro, NVSAll driver versions prior to 580.178.04affected
NVIDIATeslaAll driver versions prior to 615.71.09affected
NVIDIATeslaAll driver versions prior to 610.57.04affected
NVIDIATeslaAll driver versions prior to 595.91.07affected
NVIDIATeslaAll driver versions prior to 580.178.04affected
NVIDIAGeForceAll driver versions prior to 595.91.07affected
NVIDIAGeForceAll driver versions prior to 580.178.04affected
NVIDIAGuest driver595.71.05(All versions prior to and including vGPU 20.1)affected
NVIDIAGuest driver580.159.03(All versions prior to and including vGPU 19.5)affected

Weaknesses

  • CWE-362: CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References