CVE-2026-47594: Use After Free
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where an unprivileged user may cause a use-after-free condition by issuing a sequence of driver commands. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, data tampering, and information disclosure.
Affected Software
Event History
Frequently Asked Questions
Who can exploit this issue?
An unprivileged local user can trigger the condition by issuing a sequence of GPU driver commands. The local attack vector means an attacker needs access to a vulnerable Windows or Linux system rather than network-only access.
What is the potential impact if exploitation succeeds?
Successful exploitation may enable code execution, privilege escalation, denial of service, data tampering, and information disclosure. The CVSS vector rates confidentiality, integrity, and availability impact as high.