NVIDIA GPU driver: local user can make the kernel mode driver dereference an untrusted pointer
Impact
An unprivileged local user can hand the kernel mode driver a pointer it trusts without validation, producing kernel memory disclosure or a driver crash. On a shared GPU node the disclosure path can leak kernel memory to a tenant process, and the crash path takes the GPU - and usually the node - out of service, which is expensive when jobs are long-running and the node cannot be drained cheaply. The affected product list includes the Virtual GPU Manager, so vGPU hosts are in scope as well as bare-metal nodes.
Who can reach it
Local user with low privileges and access to the GPU device nodes - any tenant with a GPU container qualifies. Authentication to the host is required, no privileged role is.
What to do
Update to the fixed driver and vGPU manager branches in NVIDIA bulletin 2026/5861. Drain the node and reboot to swap the kernel modules; on vGPU hosts the guests must be evacuated first.
References
Related entries
- Linux kernel amdgpu display core (DC/DM) (drm/amd/display): An out-of-bounds access in the amdgpu display core (DC/DM)CVE-2026-53138 · Linux kernel amdgpu display core (DC/DM) (drm/amd/display)High
- Linux kernel amdgpu display core (DC/DM) (drm/amd/display): An out-of-bounds access in the amdgpu display core (DC/DM)CVE-2026-53330 · Linux kernel amdgpu display core (DC/DM) (drm/amd/display)High
- Linux kernel amdgpu user-mode queues (doorbell submission path) (drm/amdgpu): A correctness defect in the amdgpuCVE-2026-68103 · Linux kernel amdgpu user-mode queues (doorbell submission path) (drm/amdgpu)High
- NVIDIA/Mellanox ConnectX driver (mlx5_ib DEVX subscribe-event unwind): DEVX is the raw device-command escape hatch thatCVE-2026-74395 · NVIDIA/Mellanox ConnectX driver (mlx5_ib DEVX subscribe-event unwind)High
- Linux amdgpu VCN: integer overflow in dec_msg buffer count lets the parser run past the message BOCVE-2026-89818 · Linux kernel drm/amdgpu VCN decode message parser (num_buffers bounds check)High
- Linux kernel amdkfd: unbounded copy_to_user in get_wave_state leaks adjacent kernel memoryCVE-2026-97496 · Linux kernel drm/amdkfd (get_wave_state, CRIU restore path)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.