NVIDIA GPU Display Driver Linux: Read-Only Memory Bypass in KML Auth
CVE-2026-47591 Published on September 30, 2026
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could bypass read-only memory protection due to incorrect authorization, enabling write access to memory marked read-only. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Vulnerability Analysis
CVE-2026-47591 can be exploited with local system access, and requires small amount of user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to be very high.
Weakness Type
What is an AuthZ Vulnerability?
The software performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check. This allows attackers to bypass intended access restrictions.
CVE-2026-47591 has been classified to as an AuthZ vulnerability or weakness.
Products Associated with CVE-2026-47591
Want to know whenever a new CVE is published for NVIDIA products? stack.watch will email you.
Affected Versions
NVIDIA GeForce:- Version All driver versions prior to 615.71.09 is affected.
- Version All driver versions prior to 610.57.04 is affected.
- Version All driver versions prior to 615.71.09 is affected.
- Version All driver versions prior to 610.57.04 is affected.
- Version All driver versions prior to 595.91.07 is affected.
- Version All driver versions prior to 580.178.04 is affected.
- Version All driver versions prior to 615.71.09 is affected.
- Version All driver versions prior to 610.57.04 is affected.
- Version All driver versions prior to 595.91.07 is affected.
- Version All driver versions prior to 580.178.04 is affected.
- Version All driver versions prior to 595.91.07 is affected.
- Version All driver versions prior to 580.178.04 is affected.
- Version 595.71.03(All versions prior to and including vGPU 20.1) is affected.
- Version 580.159.01(All versions prior to and including vGPU 19.5) is affected.