{"id":"CVE-2026-47554","title":"NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where improper verification of cryptographic signatures may cause signature verification to be bypassed under memory pressure","summary":"NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where improper verification of cryptographic signatures may cause signature verification to be bypassed under memory pressure. A successful exploit of …","severity":"high","cvss":7.1,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H","cwe":["CWE-347"],"vendor":"NVIDIA","product":"GeForce","affected":["GeForce All driver versions prior to 615.71.09","GeForce All driver versions prior to 610.57.04","rtx_quadro_nvs All driver versions prior to 615.71.09","rtx_quadro_nvs All driver versions prior to 610.57.04","rtx_quadro_nvs All driver versions prior to 595.91.07","rtx_quadro_nvs All driver versions prior to 580.178.04","Tesla All driver versions prior to 615.71.09","Tesla All driver versions prior to 610.57.04","Tesla All driver versions prior to 595.91.07","Tesla All driver versions prior to 580.178.04","GeForce All driver versions prior to 595.91.07","GeForce All driver versions prior to 580.178.04"],"published":"2026-09-30","updated":"2026-09-30","sourceUpdated":"2026-09-30T18:18:28.237","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-47554","references":[{"url":"https://github.com/NVIDIA/product-security/tree/main/2026/5861","label":"psirt@nvidia.com"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47554","label":"psirt@nvidia.com"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-47554","label":"psirt@nvidia.com"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2026-09-30T17:17:05.888287Z"},"ingestedAt":"2026-09-30T16:10:07.398Z","slug":"CVE-2026-47554","body":"## Overview\n\nNVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where improper verification of cryptographic signatures may cause signature verification to be bypassed under memory pressure. A successful exploit of this vulnerability might lead to denial of service and data tampering.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":39,"depthScoreParts":{"impact":39.1,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}