NVIDIA Virtual Gpu Manager
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in NVIDIA Virtual Gpu Manager.
By the Year
In 2026 there have been 64 vulnerabilities in NVIDIA Virtual Gpu Manager with an average score of 7.1 out of ten. Last year, in 2025 Virtual Gpu Manager had 4 security vulnerabilities published. That is, 60 more vulnerabilities have already been reported in 2026 as compared to last year. However, the average CVE base score of the vulnerabilities in 2026 is greater by 0.81.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 64 | 7.14 |
| 2025 | 4 | 6.33 |
| 2024 | 0 | 0.00 |
| 2023 | 0 | 0.00 |
| 2022 | 0 | 0.00 |
| 2021 | 11 | 5.73 |
| 2020 | 18 | 6.82 |
| 2019 | 3 | 5.67 |
It may take a day or so for new Virtual Gpu Manager vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent NVIDIA Virtual Gpu Manager Security Vulnerabilities
NVIDIA vGPU KGPT numeric conversion flaw allows code exec
CVE-2026-47539
6.7 - Medium
- September 30, 2026
NVIDIA vGPU Virtual GPU Manager for Linux contains a vulnerability in the kernel mode layer where an attacker could cause an incorrect numeric conversion. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Incorrect Conversion between Numeric Types
NVIDIA vGPU: OOB Write via RPC Enables Privilege Escalation
CVE-2026-47496
7.3 - High
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the Virtual GPU Manager (vGPU plugin) where a guest VM user may cause an out-of-bounds write by sending a specially crafted RPC call to the host. A successful exploit of this vulnerability might lead to escalation of privileges, data tampering, and denial of service.
Memory Corruption
NVIDIA vGPU VM: Incorrect Resource Transfer Vulnerability
CVE-2026-47574
7.8 - High
- September 30, 2026
NVIDIA vGPU Virtual GPU Manager for Linux contains a vulnerability where an attacker could cause incorrect resource transfer between spheres. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Incorrect Resource Transfer Between Spheres
NVIDIA vGPU Manager Linux Kernel OOB Read Vulnerability
CVE-2026-47544
7.8 - High
- September 30, 2026
NVIDIA vGPU Virtual GPU Manager for Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Out-of-bounds Read
NVIDIA vGPU Manager Linux Kernel OOB Write Privilege Escalation
CVE-2026-47541
7.8 - High
- September 30, 2026
NVIDIA vGPU Virtual GPU Manager for Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Memory Corruption
NVIDIA vGPU vGPU Manager Kernel Mode OOB Read
CVE-2026-47536
7.8 - High
- September 30, 2026
NVIDIA vGPU Virtual GPU Manager for Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Out-of-bounds Read
NVIDIA vGPU VM Linux OOB Read in Firmware Possible Priv Escalation
CVE-2026-47535
7.8 - High
- September 30, 2026
NVIDIA vGPU Virtual GPU Manager for Linux contains a vulnerability in the firmware where an attacker could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Out-of-bounds Read
NVIDIA vGPU Manager Linux Kernel OOB Read Vulnerability
CVE-2026-47521
7.8 - High
- September 30, 2026
NVIDIA vGPU Virtual GPU Manager for Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Out-of-bounds Read
NVIDIA vGPU Virtual GPU Manager Linux Kernel OOB Read Vulnerability
CVE-2026-47520
7.8 - High
- September 30, 2026
NVIDIA vGPU Virtual GPU Manager for Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Out-of-bounds Read
Out-of-Bounds Read in NVIDIA vGPU Virtual GPU Manager Kernel (CVE-2026-47519)
CVE-2026-47519
7.8 - High
- September 30, 2026
NVIDIA vGPU Virtual GPU Manager for Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Out-of-bounds Read
NVIDIA vGPU Driver OOB Write in Linux VM
CVE-2026-47503
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where a guest VM user may cause an out-of-bounds write by sending a crafted RPC message with invalid performance state list size parameters. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure.
Memory Corruption
NVIDIA vGPU Manager OOB Read Enables PrivEsc & Code Exec
CVE-2026-47499
7.8 - High
- September 30, 2026
NVIDIA vGPU Virtual GPU Manager for Windows and Linux contains a vulnerability in the kernel mode layer where a guest could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Out-of-bounds Read
NVIDIA vGPU Manager GSP Plugin OOB Write CVE-2026-47498
CVE-2026-47498
7.8 - High
- September 30, 2026
NVIDIA vGPU Manager contains a vulnerability in the GPU System Processor (GSP) plugin where a guest VM user may cause an out-of-bounds write by sending a specially crafted RPC message. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure.
Memory Corruption
NV Virtual GPU Manager GSP Tracing Buffer Escalation Vulnerability
CVE-2026-47497
7.8 - High
- September 30, 2026
NVIDIA Virtual GPU Manager contains a vulnerability in the GPU System Processor (GSP) tracing component where a guest VM user may cause improper access by sending crafted data through a shared buffer. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure.
TOCTTOU
NVIDIA vGPU Virtual GPU Manager Kernel OOB Write PrivEsc
CVE-2026-47495
7.8 - High
- September 30, 2026
NVIDIA vGPU Virtual GPU Manager for Windows and Linux contains a vulnerability in the kernel mode layer where a user could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Memory Corruption
NVIDIA vGPU GPU Kernel Driver Privileged Host Resource Access Vulnerability
CVE-2026-47493
7.8 - High
- September 30, 2026
NVIDIA vGPU software for Windows and Linux contains a vulnerability in the GPU kernel driver where a guest may access privileged host GPU resources for which it is not authorized. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure.
AuthZ
Kernel Log Injection in NVIDIA GPU Display Driver (Linux)
CVE-2026-47562
4.4 - Medium
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could inject crafted text into the kernel log because the supplied version string is not properly sanitized. A successful exploit of this vulnerability might lead to denial of service and data tampering.
Output Sanitization
Local User Info Disclosure via Missing Auth in NVIDIA GPU Display Driver
CVE-2026-47604
5.5 - Medium
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode driver where a local user may access another process's GPU channel state due to missing authorization checks. A successful exploit of this vulnerability might lead to information disclosure.
AuthZ
Information Disclosure: NVIDIA GPU Display Driver Cross-Process Channel Read
CVE-2026-47603
5.5 - Medium
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode driver where a local user may access another process's GPU channel state due to missing authorization checks. A successful exploit of this vulnerability might lead to information disclosure.
AuthZ
Kernel Locking Flaw in NVIDIA GPU Display Driver (Windows)
CVE-2026-47581
5.5 - Medium
- September 30, 2026
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel module where a user could cause improper locking. A successful exploit of this vulnerability might lead to denial of service.
Improper Locking
Uncontrolled Kernel Log Generation in NVIDIA GPU Display Driver (Linux)
CVE-2026-47568
5.5 - Medium
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could cause uncontrolled kernel log generation by repeatedly invoking an interface that emits unrate-limited error messages. A successful exploit of this vulnerability might lead to denial of service.
Resource Exhaustion
NVIDIA GPU Display Driver Kernel Mode Layer VMA Exhaustion Denial of Service
CVE-2026-47567
5.5 - Medium
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where a user could cause uncontrolled resource consumption by exhausting the DRM VMA offset address space. A successful exploit of this vulnerability might lead to denial of service.
Resource Exhaustion
Kernel Memory Leak in NVIDIA Linux GPU Driver: Denial of Service
CVE-2026-47566
5.5 - Medium
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could cause a memory leak in error paths leading to kernel memory exhaustion. A successful exploit of this vulnerability might lead to denial of service.
Memory Leak
NULL Pointer Deref in NVIDIA Linux GPU Display Driver (CVE-2026-47557)
CVE-2026-47557
5.5 - Medium
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could cause a NULL pointer dereference. A successful exploit of this vulnerability might lead to denial of service.
NULL Pointer Dereference
NVIDIA GPU Display Driver: Uninitialized Kernel Memory Copy to User Space
CVE-2026-47555
5.5 - Medium
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where a user could cause uninitialized kernel memory to be copied back to userspace. A successful exploit of this vulnerability might lead to information disclosure.
Use of Uninitialized Resource
NVIDIA GPU Display Driver: Unprivileged Local NULL Deref DoS
CVE-2026-47549
5.5 - Medium
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel module where an unprivileged local user could cause a NULL pointer dereference. A successful exploit of this vulnerability might lead to denial of service.
NULL Pointer Dereference
NVIDIA GPU Display Driver Kernel Divide-by-Zero Denial of Service
CVE-2026-47534
5.5 - Medium
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause a divide by zero. A successful exploit of this vulnerability might lead to denial of service.
Divide By Zero
Local Null-Pointer Dereference in NVIDIA Linux GPU Driver via ioctl
CVE-2026-47517
5.5 - Medium
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode driver where a local user may cause a null pointer dereference by submitting a crafted ioctl. A successful exploit of this vulnerability might lead to denial of service.
NULL Pointer Dereference
NVIDIA GPU Display Improper Access Control in Kernel Mode (CVE-2026-47492)
CVE-2026-47492
5.5 - Medium
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an attacker can cause improper access control. A successful exploit of this vulnerability might lead to denial of service.
AuthZ
Kernel UAF via async event delivery in NVIDIA GPU Display Driver (Linux)
CVE-2026-47598
7 - High
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the open-source kernel module event delivery path where an unprivileged local user could cause a use-after-free through a race between asynchronous event delivery and file close. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, information disclosure, and data tampering.
Dangling pointer
Out-of-Bounds Write in NVIDIA GPU Display Driver Kernel Module
CVE-2026-47582
7 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel module where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Memory Corruption
NVIDIA GPU Display Driver deref UB leads to DOS & info disclosure
CVE-2026-47602
7.1 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode driver where a local user can cause the driver to dereference an untrusted pointer. A successful exploit of this vulnerability might lead to denial of service and information disclosure.
Buffer Overflow
NVIDIA GPU Display Driver UAF PrivEsc
CVE-2026-47594
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where an unprivileged user may cause a use-after-free condition by issuing a sequence of driver commands. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, data tampering, and information disclosure.
Dangling pointer
Kernel Mode OOB Read in NVIDIA GPU Display Driver (Windows/Linux)
CVE-2026-47592
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an unprivileged user could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Out-of-bounds Read
NVIDIA GPU Display Driver Linux: Read-Only Memory Bypass in KML Auth
CVE-2026-47591
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could bypass read-only memory protection due to incorrect authorization, enabling write access to memory marked read-only. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
AuthZ
NVIDIA GPU Display Driver Win Kernel Layer Buffer Overflow
CVE-2026-47578
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer where an attacker could cause an incorrect buffer size calculation. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Incorrect Calculation of Buffer Size
PrivEsc via Auth Bypass in NVIDIA GPU Display Driver (Windows)
CVE-2026-47571
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows contains a vulnerability in kernel-mode escape handling where an attacker with local access could bypass an authorization check that is intended to restrict certain operations based on client execution context. A successful exploit of this vulnerability might lead to escalation of privilege, information disclosure, data tampering, denial of service, or code execution.
AuthZ
NVIDIA GPU Display Driver Linux: Kernel Mode Layer Type Confusion
CVE-2026-47569
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could cause a type confusion via a handle recycle race. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Object Type Confusion
NVIDIA GPU Display Driver Linux NULL Pointer Deref Priv Escalation
CVE-2026-47563
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could cause a NULL pointer dereference. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
NULL Pointer Dereference
NVIDIA GPU Display Driver Linux kernel OOB write via ioctl
CVE-2026-47561
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where the size of an ioctl input buffer is not validated, allowing an unprivileged caller to trigger an out-of-bounds write in kernel memory. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Memory Corruption
NVIDIA Linux GPU Driver Kernel Mode Auth Bypass (CVE202647552)
CVE-2026-47552
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could bypass an authorization check and modify privileged configuration. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
AuthZ
Use-After-Free in NVIDIA GPU Display Driver (UAF)
CVE-2026-47551
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where a user could cause a use-after-free. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Dangling pointer
NVIDIA GPU Display Driver: Unprivileged Local User Pointer Deref
CVE-2026-47550
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer where an unprivileged local user can supply an untrusted pointer that the driver dereferences without validation. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Buffer Overflow
NVIDIA GPU Display Driver OOB Write in Kernel Mode (CVE-2026-47548)
CVE-2026-47548
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Memory Corruption
NVIDIA GPU Display Driver OOB Read Privilege Escalation
CVE-2026-47545
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Out-of-bounds Read
Int. Underflow in NVIDIA GPU Display Driver (Kernel Mode) Enables Code Exec
CVE-2026-47540
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause an integer underflow. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Integer underflow
NVIDIA GPU Display Driver Uninitialized Pointer Vulnerability (CVE-2026-47528)
CVE-2026-47528
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the firmware where an attacker could cause an access of an uninitialized pointer. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Access of Uninitialized Pointer
NVIDIA GPU Display Driver Kernel OOB Write Exploit (CVE-2026-47523)
CVE-2026-47523
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Memory Corruption
NVIDIA GPU Display Driver (Windows/Linux) kernel data type conversion flaw
CVE-2026-47508
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could cause an incorrect conversion between numeric types. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Incorrect Conversion between Numeric Types
NVIDIA GPU Display Driver Kernel OOB Array Access Vulnerability
CVE-2026-47507
7.8 - High
- September 30, 2026
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could cause an out-of-bounds array access. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
out-of-bounds array index
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for NVIDIA Virtual Gpu Manager or by NVIDIA? Click the Watch button to subscribe.