CVE-2026-47500: Use After Free
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where improper cleanup of reference counts during error paths could lead to a use-after-free condition. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Affected Software
Event History
Frequently Asked Questions
What level of access does an attacker need to exploit this issue?
The attack vector is local and requires low privileges. No user interaction is required.
Which systems are in scope?
Systems using the NVIDIA GPU Display Driver on Windows or Linux are in scope. The available information does not identify affected or fixed driver versions.
What could exploitation allow?
A successful exploit may allow code execution, denial of service, privilege escalation, information disclosure, or data tampering. The severity is rated high with a CVSS score of 7.8.