NVIDIA Linux GPU driver: unsanitized version string lets a local user inject text into the kernel log
Impact
A version string supplied by a local user is written to the kernel log without sanitization, so an attacker can inject arbitrary text - including forged log lines - into dmesg. On a GPU fleet the consequence is log integrity: an operator or a detection pipeline reading kernel messages can be shown fabricated driver, Xid or reset events, which is enough to misdirect an incident or hide a real one. NVIDIA scores it 4.4 with low integrity and low availability impact and no confidentiality loss. The Tesla datacenter branch, the vGPU guest driver and the Virtual GPU Manager are all listed, so a tenant VM can pollute the host-visible log stream.
Who can reach it
Local, authenticated: a user able to load or interact with the driver interface that passes the version string. No admin privileges needed; no network path.
What to do
Update the GPU driver to a fixed version listed in NVIDIA security bulletin 2026/5861 - the record names no versions. Driver replacement means unloading the kernel modules, so drain and reboot each GPU node. Until then, treat kernel-log driver lines as untrusted input in any alerting or forensic tooling that parses dmesg.
References
Related entries
- NVIDIA DGX Spark (GB10) - SROOT / OSROOT root-of-trust firmware: A null-pointer dereference in SROOT firmware crashesCVE-2025-33197 · NVIDIA DGX Spark (GB10) - SROOT / OSROOT root-of-trust firmwareMedium
- KAI Scheduler: Improper access control in resource allocation (cross-tenant quota abuse)CVE-2026-24176 · KAI SchedulerMedium
- Transformers4Rec: Code exec via insecure deserialization in the pipelineCVE-2026-24232 · Transformers4RecMedium
- NVIDIA License System - Delegated Licensing Service (DLS): Improper authentication in the DLS lets an unauthenticatedCVE-2026-24241 · NVIDIA License System - Delegated Licensing Service (DLS)Medium
- GeForce NOW Android app: Info disclosure / code exec via implicit intentCVE-2023-31014 · GeForce NOW Android appMedium
- DGX A100 SBIOS: Buffer overflow in SBIOSCVE-2023-31031 · DGX A100 SBIOSMedium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.