NVIDIA Linux GPU driver: tenant can exhaust the DRM VMA offset address space and wedge the GPU
Impact
A local user with access to the GPU device nodes can exhaust the DRM VMA offset address space, an unbounded per-driver resource, and deny GPU service to everything else on the node. On a shared GPU node this is a cross-tenant availability problem: one pod's mapping loop takes out the other tenants' CUDA contexts, and recovery generally means resetting or rebooting the node rather than restarting one process. NVIDIA scores it 5.5 with no confidentiality or integrity impact, so the risk is uptime, not data. The record lists the Tesla datacenter branch, the vGPU guest driver and the vGPU Virtual GPU Manager as affected, so both bare-metal and virtualized GPU fleets are in scope.
Who can reach it
Local, authenticated: any tenant with a GPU pod or shell that can open the NVIDIA device nodes. No admin rights needed. Not reachable over the network.
What to do
Update the NVIDIA GPU driver to a version listed as fixed in NVIDIA security bulletin 2026/5861 (the record does not name the fixed versions, so take them from the bulletin). Replacing the driver means unloading the kernel modules, so plan a drain and reboot of each GPU node; for vGPU fleets the Virtual GPU Manager on the host and the guest drivers both need updating, which is a host maintenance window. No mitigation is documented short of restricting who can open the GPU device nodes.
References
Related entries
- NVIDIA Linux GPU driver: unrate-limited error path lets a local user flood the kernel logCVE-2026-47568 · NVIDIA GPU Display Driver for Linux (kernel mode layer, unrate-limited error logging)Medium
- NVIDIA GPU driver: missing authorization lets a local user read another process's GPU channel stateCVE-2026-47603 · NVIDIA GPU Display Driver kernel mode driver (GPU channel state authorization)Medium
- NVIDIA Triton Inference Server: An absolute path traversal reachable from a local low-privileged account reaches codeCVE-2026-47630 · NVIDIA Triton Inference ServerMedium
- Linux kernel amdgpu display core (DC/DM) (drm/amd/display): A NULL pointer dereference in the amdgpu display coreCVE-2026-53135 · Linux kernel amdgpu display core (DC/DM) (drm/amd/display)Medium
- Linux kernel amdgpu display core (DC/DM) (drm/amd/display): Missing or insufficient validation of user-suppliedCVE-2026-53285 · Linux kernel amdgpu display core (DC/DM) (drm/amd/display)Medium
- Linux kernel amdgpu GEM/VM/command-submission ioctl surface (drm/amdgpu): A race condition or locking defectCVE-2026-53293 · Linux kernel amdgpu GEM/VM/command-submission ioctl surface (drm/amdgpu)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.