Multi-Instance GPU Vulnerability in NVIDIA Display Driver for Linux
CVE-2026-24197

6.5MEDIUM

Key Information:

Vendor

Nvidia

Vendor
CVE Published:
26 May 2026

What is CVE-2026-24197?

The NVIDIA Display Driver for Linux exhibits a vulnerability in its Multi-Instance GPU (MIG) partition management. This issue arises from an insecure default initialization of memory subsystem routing resources, which can potentially lead to data corruption or system hang during the partition reconfiguration process. If exploited, this vulnerability may result in service disruption, emphasizing the need for prompt attention and mitigation strategies for affected systems.

Affected Version(s)

GeForce Linux(R535) All driver versions prior to 535.309.01

GeForce Linux(R580) All driver versions prior to 580.159.03

GeForce Linux(R595) All driver versions prior to 595.71.05

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.