Improper Cryptographic Signature Verification in NVIDIA GPU Display Driver for Linux
CVE-2026-47554

7.1HIGH

Key Information:

Vendor

Nvidia

Vendor
CVE Published:
30 September 2026

What is CVE-2026-47554?

The NVIDIA GPU Display Driver for Linux has a flaw in its kernel mode layer, where it fails to properly verify cryptographic signatures. This vulnerability can be exploited under conditions of memory pressure, potentially allowing an attacker to bypass signature verification. The consequences of this attack may include denial of service and the possibility of data tampering, posing significant risks to system stability and data integrity.

Affected Version(s)

GeForce Linux(R580) All driver versions prior to 580.178.04

GeForce Linux(R595) All driver versions prior to 595.91.07

GeForce Linux(R610) All driver versions prior to 610.57.04

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.