CVE-2026-47597: Use After Free
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the open-source kernel module Resource Server where an unprivileged local user could cause a use-after-free through a missing self-reference guard in the map cleanup path. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, information disclosure, and data tampering.
Affected Software
Event History
Frequently Asked Questions
Who is exposed to this issue?
Systems running the NVIDIA GPU Display Driver on Windows or Linux with the affected open-source kernel module Resource Server are exposed. Exploitation requires local access by an unprivileged user.
What access does an attacker need to exploit the vulnerability?
An attacker needs to be able to run code locally as an unprivileged user. No user interaction is required.
What could exploitation allow?
Successful exploitation may enable code execution, privilege escalation, denial of service, information disclosure, or data tampering.