NVIDIA vGPU Manager on Linux: out-of-bounds read in GPU firmware
Impact
The out-of-bounds read is in firmware running on the GPU rather than in host kernel code, so the disclosure happens in a context the hypervisor cannot inspect and host-level monitoring will not log. On a vGPU host the GPU firmware is the shared component underneath every tenant VM on the board, which makes a leak there a cross-tenant concern rather than a single-VM one. NVIDIA ships the firmware with the vGPU Manager package, so there is no separate flashing procedure, but the GPU does have to be reinitialized.
Who can reach it
Local to the vGPU host; in this bulletin the realistic source is a user in a guest VM with a vGPU assigned, reaching the GPU through the normal driver interface.
What to do
Install the Virtual GPU Manager package from NVIDIA bulletin 2026/5861, which carries the updated firmware; no fixed version appears in this record. The GPU must come up with the new firmware, so evacuate the host's VMs and reboot the host rather than restarting services.
References
Related entries
- NVIDIA GPU driver: integer underflow in the kernel mode layerCVE-2026-47540 · NVIDIA GPU Display Driver for Windows and Linux (kernel mode layer, size arithmetic)High
- NVIDIA vGPU Manager on Linux: out-of-bounds write in the host kernel mode layerCVE-2026-47541 · NVIDIA vGPU Virtual GPU Manager for Linux (kernel mode layer)High
- NVIDIA Windows GPU driver: untrusted user pointer is dereferenced without validationCVE-2026-47550 · NVIDIA GPU Display Driver for Windows (kernel mode layer, pointer validation)High
- NVIDIA Linux GPU driver: unprivileged user bypasses an authorization check and changes privileged settingsCVE-2026-47552 · NVIDIA GPU Display Driver for Linux (kernel mode layer, privileged configuration)High
- NVIDIA Linux GPU driver: double-free of imported memory state in the kernel moduleCVE-2026-47558 · NVIDIA GPU Display Driver for Linux (kernel mode layer, imported memory state)High
- NVIDIA GPU driver: a user can access memory belonging to another user's processCVE-2026-47559 · NVIDIA GPU Display Driver for Windows and Linux (kernel mode layer, process memory isolation)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.