CVE-2026-65118: High severity Nvidia Infrastructure Controller for Linux vulnerability
NVIDIA Infrastructure Controller for Linux contains a vulnerability where an attacker could cause improper certificate validation. A successful exploit of this vulnerability might lead to information disclosure, data tampering, and denial of service.
Affected Software
Event History
Frequently Asked Questions
What level of access does an attacker need to exploit this issue?
The vulnerability can be exploited without privileges or user interaction. The attack vector is adjacent network access, so the attacker must be able to reach the affected component from an adjacent network context.
What impact could successful exploitation have?
Successful exploitation may allow information disclosure, data tampering, and denial of service. The CVSS vector indicates high confidentiality impact and low integrity and availability impact, with scope changed.
Is exploitation expected to be straightforward?
No. The CVSS vector rates attack complexity as high, indicating that exploitation requires conditions beyond merely reaching the affected service.