GPU VulnDB

Database/NVIDIA / GPU stack

NVIDIA GPU driver: uninitialized kernel memory is copied back to userspace

CVSS 5.5CVE-2026-47555NVIDIA / GPU stackcurated

Impact

The kernel mode layer returns a buffer it did not fully initialize, handing an unprivileged local caller the leftover contents of kernel memory. That is an information leak usable for defeating kernel address randomization or recovering fragments of data that passed through the driver - on a shared GPU node, data that may have belonged to another tenant's workload. Unlike most of bulletin 5861 this needs no elevated privileges, which makes it directly reachable from a tenant pod. No integrity or availability impact.

Who can reach it

Any local unprivileged user with access to the GPU device nodes, including a tenant GPU container or a guest VM.

What to do

Update the GPU display driver, guest driver and vGPU manager to the fixed branch in NVIDIA bulletin 2026/5861. Drain the node and reboot to reload the kernel modules.

References

Related entries

All NVIDIA / GPU stack entries

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.