CVE-2026-47525: Out-of-bounds Read
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause an improper validation of an array index. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Affected Software
Event History
Frequently Asked Questions
Who is realistically exposed to this issue?
Systems running the NVIDIA GPU Display Driver on Windows or Linux are in scope. The vulnerability is in the kernel-mode layer, so successful exploitation could affect the host at a privileged level.
What level of access does an attacker need?
The CVSS vector indicates local access and high privileges are required. No user interaction is required.
What could exploitation allow an attacker to do?
A successful exploit might lead to code execution, denial of service, privilege escalation, information disclosure, or data tampering.