NVIDIA vGPU KGPT numeric conversion flaw allows code exec
CVE-2026-47539 Published on September 30, 2026
NVIDIA vGPU Virtual GPU Manager for Linux contains a vulnerability in the kernel mode layer where an attacker could cause an incorrect numeric conversion. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Vulnerability Analysis
CVE-2026-47539 can be exploited with local system access, and requires user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to be very high.
Weakness Type
Incorrect Conversion between Numeric Types
When converting from one data type to another, such as long to integer, data can be omitted or translated in a way that produces unexpected values. If the resulting values are used in a sensitive context, then dangerous behaviors may occur.
Products Associated with CVE-2026-47539
Want to know whenever a new CVE is published for NVIDIA Virtual Gpu Manager? stack.watch will email you.
Affected Versions
NVIDIA Virtual GPU Manager:- Version 595.71.03(All versions prior to and including vGPU 20.1) is affected.
- Version 580.159.01(All versions prior to and including vGPU 19.5) is affected.
- Version 596.38(All versions prior to and including vGPU 20.1) is affected.
- Version 582.51(All versions prior to and including vGPU 19.5) is affected.