NVIDIA vGPU Manager: guest-triggered out-of-bounds read in the host kernel mode layer
Impact
A guest can cause the Virtual GPU Manager to read outside a buffer in the host kernel mode layer. The immediate payoff is host memory disclosure to a tenant VM, which on a vGPU host can include pointers that make the write-primitive bugs in the same bulletin reliable, and potentially data belonging to other guests on the board. Information leaks across the hypervisor boundary are also the hardest to notice, since nothing fails.
Who can reach it
From a guest VM with a vGPU assigned, as a normal user of that VM.
What to do
Upgrade the Virtual GPU Manager on affected hypervisor hosts per NVIDIA bulletin 2026/5861; no fixed version is given in this record. Migrate or stop the VMs on each host and reboot it.
References
Related entries
- NVIDIA vGPU Manager: guest-triggered out-of-bounds write in the host kernel mode layerCVE-2026-47495 · NVIDIA vGPU Virtual GPU Manager (kernel mode layer)High
- NVIDIA GPU driver: use-after-free reachable by an unprivileged user through ordinary driver callsCVE-2026-47500 · NVIDIA GPU Display Driver for Windows and Linux (kernel mode layer, object lifetime and refcounting)High
- NVIDIA Linux GPU driver: mismatched buffers during event buffer setup cause a kernel out-of-bounds writeCVE-2026-47501 · NVIDIA GPU Display Driver for Linux (kernel mode layer, event buffer setup)High
- NVIDIA vGPU Manager: guest-triggered integer overflow leads to memory corruptionCVE-2026-47502 · NVIDIA vGPU Virtual GPU Manager (kernel mode layer, size arithmetic)High
- NVIDIA vGPU plugin: guest RPC with an invalid performance state list size causes an out-of-bounds writeCVE-2026-47503 · NVIDIA Virtual GPU Manager (vGPU plugin, performance state list RPC)High
- NVIDIA Linux driver NGX updater: outdated embedded crypto library is vulnerable to type confusionCVE-2026-47504 · NVIDIA Linux GPU Display Driver (NGX updater, embedded cryptographic library)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.