Bug 2544016 (CVE-2026-47561) - CVE-2026-47561 nvidia-driver: xorg-x11-drv-nvidia: nvidia-driver: privilege escalation via unvalidated ioctl buffer size
Summary: CVE-2026-47561 nvidia-driver: xorg-x11-drv-nvidia: nvidia-driver: privilege e...
Keywords:
Status: NEW
Alias: CVE-2026-47561
Product: Security Response
Classification: Other
Component: vulnerability-draft
Version: unspecified
Hardware: All
OS: Linux
high
high
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-09-30 16:05 UTC by OSIDB Bzimport
Modified: 2026-09-30 16:15 UTC (History)
2 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-09-30 16:05:30 UTC
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where the size of an ioctl input buffer is not validated, allowing an unprivileged caller to trigger an out-of-bounds write in kernel memory. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.


Note You need to log in before you can comment on or make changes to this bug.