CVE-2026-47590: Use After Free
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where an unprivileged user may cause a use-after-free condition by issuing a sequence of driver commands. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, and information disclosure.
Affected Software
Event History
Frequently Asked Questions
Is this exploitable remotely?
The attack vector is local. An attacker needs local access to the affected Windows or Linux system.
What level of access does an attacker need before attempting exploitation?
The vulnerability requires low privileges. It is described as exploitable by an unprivileged user issuing a sequence of driver commands.
Does exploitation require user interaction?
No user interaction is required, according to the CVSS vector.
What outcomes could a successful exploit enable?
A successful exploit may enable code execution, privilege escalation, denial of service, and information disclosure. The CVSS vector rates confidentiality, integrity, and availability impact as high.