CVE-2026-47501
Awaiting Analysis Awaiting Analysis - Queue

Out-of-Bounds Write in NVIDIA GPU Display Driver for Linux

Vulnerability report for CVE-2026-47501, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-30

Last updated on: 2026-09-30

Assigner: NVIDIA Corporation

Description

NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could cause an out-of-bounds write by supplying mismatched memory buffers during event buffer setup. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-30
Last Modified
2026-09-30
Generated
2026-09-30
AI Q&A
2026-09-30
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
nvidia gpu_display_driver *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-787 The product writes data past the end, or before the beginning, of the intended buffer.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is in NVIDIA GPU Display Driver for Linux. It involves an out-of-bounds write in the kernel mode layer caused by mismatched memory buffers during event buffer setup. Exploitation could lead to code execution, denial of service, privilege escalation, information disclosure, or data tampering.

Detection Guidance

Detection requires checking for vulnerable NVIDIA GPU Display Driver versions on Linux systems. Use commands like 'nvidia-smi' or 'dpkg -l | grep nvidia-driver' to inspect installed versions. Compare against NVIDIA's security advisories for this CVE.

Impact Analysis

If exploited, this vulnerability could allow an attacker to execute arbitrary code, crash the system, gain elevated privileges, steal sensitive information, or alter data. It primarily affects systems using NVIDIA GPU Display Driver for Linux.

Mitigation Strategies

Update the NVIDIA GPU Display Driver to the latest patched version immediately. Disable GPU acceleration if not required. Monitor NVIDIA's security bulletins for updates and apply patches as soon as available.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-47501. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart