Out-of-Bounds Read Vulnerability in NVIDIA's Virtual GPU Manager for Linux
CVE-2026-47535
What is CVE-2026-47535?
The Virtual GPU Manager for Linux by NVIDIA contains a vulnerability in its firmware that allows for out-of-bounds read conditions. This flaw could be exploited by an attacker to execute arbitrary code, launch a denial of service attack, escalate privileges, disclose sensitive information, or tamper with data. The potential impact of this vulnerability underscores the importance of prompt patches and vigilance for users and administrators.
Affected Version(s)
Virtual GPU Manager Azure Local, Windows Server(vGPU 19) 582.51(All versions prior to and including vGPU 19.5)
Virtual GPU Manager Azure Local, Windows Server(vGPU 20) 596.38(All versions prior to and including vGPU 20.1)
Virtual GPU Manager XenServer, VMware vSphere, Red Hat Enterprise Linux KVM, Ubuntu(vGPU 19) 580.159.01(All versions prior to and including vGPU 19.5)