NVIDIA GPU firmware: access of an uninitialized pointer reachable from a local attacker
Impact
The flaw is in firmware rather than in the host-side driver, so the faulting code runs on the GPU itself, below the operating system's view. An attacker who reaches it gets execution or corruption in a context that host-level EDR and kernel hardening do not see, and that persists across a process or container restart until the board is reset. NVIDIA ships this firmware inside the driver package, so the remedy is still a driver update rather than a separate flashing step, but it does mean the GPU must be reinitialized for the new firmware to take effect.
Who can reach it
Local. An attacker able to submit work to the GPU through the driver on an affected node, including a tenant container with the device nodes; Virtual GPU Manager hosts are also listed.
What to do
Install the driver package from NVIDIA bulletin 2026/5861, which carries the updated GPU firmware; no fixed version is stated in this record. The GPU has to be reinitialized with the new firmware, so drain the node and reboot rather than only reloading the kernel module.
References
Related entries
- NVIDIA vGPU Manager on Linux: out-of-bounds read in GPU firmwareCVE-2026-47535 · NVIDIA vGPU Virtual GPU Manager for Linux (GPU firmware)High
- NVIDIA GPU driver: integer underflow in the kernel mode layerCVE-2026-47540 · NVIDIA GPU Display Driver for Windows and Linux (kernel mode layer, size arithmetic)High
- NVIDIA vGPU Manager on Linux: out-of-bounds write in the host kernel mode layerCVE-2026-47541 · NVIDIA vGPU Virtual GPU Manager for Linux (kernel mode layer)High
- NVIDIA Windows GPU driver: untrusted user pointer is dereferenced without validationCVE-2026-47550 · NVIDIA GPU Display Driver for Windows (kernel mode layer, pointer validation)High
- NVIDIA Linux GPU driver: unprivileged user bypasses an authorization check and changes privileged settingsCVE-2026-47552 · NVIDIA GPU Display Driver for Linux (kernel mode layer, privileged configuration)High
- NVIDIA Linux GPU driver: double-free of imported memory state in the kernel moduleCVE-2026-47558 · NVIDIA GPU Display Driver for Linux (kernel mode layer, imported memory state)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.