Improper Certificate Validation Vulnerability in NVIDIA Infrastructure Controller for Linux
CVE-2026-65118

7.5HIGH

Key Information:

Vendor

Nvidia

Vendor
CVE Published:
22 September 2026

What is CVE-2026-65118?

The NVIDIA Infrastructure Controller for Linux presents a security vulnerability that arises from improper certificate validation processes. Exploiting this weakness could allow attackers to conduct various malicious activities, including the potential for information disclosure, unauthorized data manipulation, and disruptions in service availability. It is essential for users and administrators to recognize the risks associated with this vulnerability and implement necessary mitigations to protect their systems and data integrity.

Affected Version(s)

Infrastructure Controller Linux 0 to 1.9

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.