NVIDIA Windows GPU driver: untrusted user pointer is dereferenced without validation
Impact
The kernel mode driver takes a pointer supplied by an unprivileged user and dereferences it without checking it. That is a textbook arbitrary read or write primitive: the attacker chooses the address the kernel touches, so exploitation tends to be reliable rather than probabilistic. Treat this as the highest-confidence escalation in the Windows half of bulletin 2026/5861 for any Windows GPU instances you operate.
Who can reach it
Local, unprivileged. Any user able to issue driver calls on an affected Windows host or guest.
What to do
Install the Windows driver branch from NVIDIA bulletin 2026/5861; the record gives no fixed version. Reboot the instance after updating, so drain affected Windows GPU VMs and hosts first. Virtual GPU Manager is also listed among affected products.
References
Related entries
- NVIDIA Linux GPU driver: unprivileged user bypasses an authorization check and changes privileged settingsCVE-2026-47552 · NVIDIA GPU Display Driver for Linux (kernel mode layer, privileged configuration)High
- NVIDIA Linux GPU driver: double-free of imported memory state in the kernel moduleCVE-2026-47558 · NVIDIA GPU Display Driver for Linux (kernel mode layer, imported memory state)High
- NVIDIA GPU driver: a user can access memory belonging to another user's processCVE-2026-47559 · NVIDIA GPU Display Driver for Windows and Linux (kernel mode layer, process memory isolation)High
- NVIDIA Linux GPU driver: unprivileged user triggers use-after-free in the kernel moduleCVE-2026-47560 · NVIDIA GPU Display Driver for Linux (kernel mode layer, object lifetime)High
- NVIDIA Linux GPU driver: ioctl input buffer size is unvalidated, giving a kernel out-of-bounds writeCVE-2026-47561 · NVIDIA GPU Display Driver for Linux (kernel mode layer, ioctl input buffer validation)High
- NVIDIA Linux GPU driver: user-triggerable NULL pointer dereference in the kernel moduleCVE-2026-47563 · NVIDIA GPU Display Driver for Linux (kernel mode layer)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.