Status: UPDATED
| Advisory ID: CVE-2026-47494
Key Details
| CVE | CVE-2026-47494 |
| CVSS Score / Version | 7.8 (High) / CVSS v3.1 |
| Updated | 2026-10-01 |
| CVSS Vector | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| CVSS Prose | attack vector is local; attack complexity is low; privileges required is low; user interaction is none; scope is unchanged; confidentiality impact is high; integrity impact is high; availability impact is high. |
| Affected products | nvidia GeForce, nvidia RTX, Quadro, NVS, and nvidia Tesla |
| Classified as | CWE-134 (Use of Externally-Controlled Format String) |
Affected Products, Subsystems & Sectors
| Subsystems | General OT |
| Sectors | Multiple |
What to Know
NVIDIA GPU Display Driver for Linux contains a vulnerability where a user might be able to cause a format string issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure. (NVD)
What to Do
Monitor nvidia's web page for any future patch releases.
References