NVIDIA GPU driver: use-after-free in the kernel module, scored as requiring physical access
Impact
A use-after-free in the GPU driver kernel module with code execution, privilege escalation, information disclosure, data tampering and denial of service listed. NVIDIA scored it AV:P with no privileges required, meaning the trigger needs physical access to the machine rather than a tenant workload - in a datacenter that is cage access or a maintenance hand, not a remote attacker. Worth patching on the regular driver cycle; not a reason to open a window tonight unless your threat model includes people at the rack.
Who can reach it
Physical access to the host (AV:P), no authentication required, high attack complexity.
What to do
Update the GPU display driver to the fixed branch in NVIDIA bulletin 2026/5861 on your normal driver cycle. The update requires a node drain and reboot to swap the kernel module.
References
Related entries
- NVIDIA vGPU Manager (vGPU plugin): Time-of-check to time-of-use on a shared resource between guest and host plugin. ACVE-2020-5969 · NVIDIA vGPU Manager (vGPU plugin)Medium
- NVIDIA vGPU Manager (vGPU plugin): The plugin keeps using a resource it validated after the guest has changed it - aCVE-2021-1061 · NVIDIA vGPU Manager (vGPU plugin)Medium
- NVIDIA DCGM - nv-hostengine: A network-reachable caller drives nv-hostengine into an unhandled error conditionCVE-2022-21820 · NVIDIA DCGM - nv-hostengineMedium
- vGPU Manager: Improper permission managementCVE-2024-0085 · vGPU ManagerMedium
- NVIDIA NeMo: SaveRestoreConnector extracts .tar archives unsafely, so a crafted archive writes files outsideCVE-2024-0129 · NVIDIA NeMoMedium
- ConnectX: Access-control flaw in NIC firmwareCVE-2025-23262 · ConnectXMedium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.