CVE-2026-47499: High severity Nvidia vGPU Virtual GPU Manager vulnerability
NVIDIA vGPU Virtual GPU Manager for Windows and Linux contains a vulnerability in the kernel mode layer where a guest could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Affected Software
Event History
Frequently Asked Questions
Who is in a position to exploit this vulnerability?
A guest could trigger the out-of-bounds read in the kernel-mode layer. The CVSS vector indicates that an attacker needs local access and low privileges, with no user interaction required.
What impact could successful exploitation have?
Successful exploitation might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. The CVSS vector rates confidentiality, integrity, and availability impact as high.
Are both Windows and Linux deployments relevant?
Yes. The affected NVIDIA vGPU Virtual GPU Manager is identified for both Windows and Linux.