GPU VulnDB

Database/NVIDIA / GPU stack

NVIDIA Linux GPU driver: mismatched buffers during event buffer setup cause a kernel out-of-bounds write

CVSS 7.8CVE-2026-47501NVIDIA / GPU stackcurated

Impact

Event buffer setup accepts a pair of buffers whose sizes do not agree and writes past the end of the smaller one in kernel memory. The caller controls both the trigger and, to a degree, the overflowing content, which makes this one of the more directly exploitable items in the bulletin. Any tenant process that can set up driver events on a shared GPU node can aim at host kernel memory.

Who can reach it

Local, unprivileged. A tenant container or local user with the NVIDIA device nodes open. No authentication needed.

What to do

Apply the driver update from NVIDIA bulletin 2026/5861; the record names no fixed version. The fix lands in the kernel module, so drain each GPU node and reboot. Virtual GPU Manager and guest driver installs are listed as affected too.

References

Related entries

All NVIDIA / GPU stack entries

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.