NVIDIA NVAPI on Windows: out-of-bounds write reachable by a local attacker
Impact
NVAPI is the user-facing control library applications use to query and configure NVIDIA GPUs on Windows, and it contains an out-of-bounds write. An attacker who can get a privileged process to call through NVAPI with controlled input, or who exploits it within their own session, gains code execution in that process's context. On Windows GPU instances NVAPI is pulled in by management agents and monitoring tooling, which is where the privilege is.
Who can reach it
Local. A user on an affected Windows host or guest that has the NVIDIA driver and NVAPI installed.
What to do
Apply the Windows driver package from NVIDIA bulletin 2026/5861, which ships NVAPI; no fixed version appears in this record. The update requires a reboot of the instance, so drain Windows GPU VMs before applying.
References
Related entries
- NVIDIA vGPU Manager on Linux: incorrect resource transfer across isolation boundariesCVE-2026-47574 · NVIDIA vGPU Virtual GPU Manager for Linux (resource transfer across isolation spheres)High
- NVIDIA Windows GPU driver: integer overflow in the DIAG escape handler causes an out-of-bounds writeCVE-2026-47575 · NVIDIA GPU Display Driver for Windows (DIAG escape handler)High
- NVIDIA Windows GPU driver: incorrect comparison in the kernel moduleCVE-2026-47577 · NVIDIA GPU Display Driver for Windows (kernel module)High
- NVIDIA Windows GPU driver: incorrect buffer size calculation in the kernel mode layerCVE-2026-47578 · NVIDIA GPU Display Driver for Windows (kernel mode layer, buffer size calculation)High
- NVIDIA Windows GPU driver: use-after-free with a scope-changing impact beyond the vulnerable componentCVE-2026-47579 · NVIDIA GPU Display Driver for Windows (kernel mode driver)High
- NVIDIA Windows GPU driver: type confusion in the kernel moduleCVE-2026-47583 · NVIDIA GPU Display Driver for Windows (kernel module)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.