GPU VulnDB

Database/NVIDIA / GPU stack

NVIDIA Linux GPU driver: user-triggerable NULL pointer dereference in the kernel module

CVSS 7.8CVE-2026-47563NVIDIA / GPU stackcurated

Impact

A local user can drive the kernel module into dereferencing a NULL pointer. The realistic outcome is an oops that takes the GPU driver, and often the node, out of service; NVIDIA lists the broader impacts the whole bulletin shares, but the described mechanism is a dereference of an unmapped address. On a GPU fleet the cost is availability: a tenant can repeatedly knock out an expensive node and force a reboot, and in-flight training work on that host is lost.

Who can reach it

Local, unprivileged. Any tenant with a GPU pod or a local user with the NVIDIA device nodes open.

What to do

Update to the driver branch in NVIDIA bulletin 2026/5861; no fixed version is stated in this record. The change is in the kernel module, so plan a drain and reboot per node. Until then, treat repeated GPU driver oopses on a shared node as a possible tenant abuse signal rather than hardware flakiness.

References

Related entries

All NVIDIA / GPU stack entries

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.