{"id":"CVE-2026-47571","title":"NVIDIA GPU Display Driver for Windows contains a vulnerability in kernel-mode escape handling where an attacker with local access could bypass an authorization check that is intended to restrict certain operations based on client executi…","summary":"NVIDIA GPU Display Driver for Windows contains a vulnerability in kernel-mode escape handling where an attacker with local access could bypass an authorization check that is intended to restrict certain operations based on client executi…","severity":"high","cvss":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-863"],"vendor":"NVIDIA","product":"GeForce","affected":["GeForce All driver versions prior to 610.60","rtx_quadro_nvs All driver versions prior to 610.88","GeForce All driver versions prior to 616.56","rtx_quadro_nvs All driver versions prior to  616.92","GeForce All driver versions prior to 582.78 Only GPUs based on the NVIDIA Maxwell, Volta, and Pascal GPU architectures are affected.","rtx_quadro_nvs All driver versions prior to 582.78","rtx_quadro_nvs All driver versions prior to 596.86","Tesla All driver versions prior to 596.86","Tesla All driver versions prior to 596.86","Tesla All driver versions prior to 616.92","Tesla All driver versions prior to 610.88","guest_driver 596.36(All versions prior to and including vGPU 20.1)","guest_driver 582.53(All versions prior to and including vGPU 19.5)","virtual_gpu_manager 596.38(All versions prior to and including vGPU 20.1)","virtual_gpu_manager 582.51(All versions prior to and including vGPU 19.5)"],"published":"2026-09-30","updated":"2026-09-30","sourceUpdated":"2026-09-30T18:18:30.500","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-47571","references":[{"url":"https://github.com/NVIDIA/product-security/tree/main/2026/5861","label":"psirt@nvidia.com"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47571","label":"psirt@nvidia.com"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-47571","label":"psirt@nvidia.com"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"total","timestamp":"2026-09-30T17:49:45.531024Z"},"ingestedAt":"2026-09-30T16:10:07.498Z","slug":"CVE-2026-47571","body":"## Overview\n\nNVIDIA GPU Display Driver for Windows contains a vulnerability in kernel-mode escape handling where an attacker with local access could bypass an authorization check that is intended to restrict certain operations based on client execution context. A successful exploit of this vulnerability might lead to escalation of privilege, information disclosure, data tampering, denial of service, or code execution.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":43,"depthScoreParts":{"impact":42.9,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}