{"id":"CVE-2026-47575","title":"NVIDIA GPU Display Driver for Windows contains a vulnerability in the display driver DIAG escape handler where a local unprivileged attacker may cause an integer overflow and out-of-bounds write","summary":"NVIDIA GPU Display Driver for Windows contains a vulnerability in the display driver DIAG escape handler where a local unprivileged attacker may cause an integer overflow and out-of-bounds write. A successful exploit of this vulnerabilit…","severity":"high","cvss":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-787"],"vendor":"NVIDIA","product":"GeForce","affected":["GeForce All driver versions prior to 610.60","rtx_quadro_nvs All driver versions prior to 610.88","GeForce All driver versions prior to 616.56","rtx_quadro_nvs All driver versions prior to 616.92","GeForce All driver versions prior to 582.78 Only GPUs based on the NVIDIA Maxwell, Volta, and Pascal GPU architectures are affected.","rtx_quadro_nvs All driver versions prior to 582.78","rtx_quadro_nvs All driver versions prior to 596.86","Tesla All driver versions prior to 596.86","Tesla All driver versions prior to 596.86","Tesla All driver versions prior to 616.92","Tesla All driver versions prior to 610.88"],"published":"2026-09-30","updated":"2026-09-30","sourceUpdated":"2026-09-30T18:18:32.497","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-47575","references":[{"url":"https://github.com/NVIDIA/product-security/tree/main/2026/5861","label":"psirt@nvidia.com"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47575","label":"psirt@nvidia.com"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-47575","label":"psirt@nvidia.com"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"total","timestamp":"2026-09-30T17:52:50.363146Z"},"ingestedAt":"2026-09-30T16:10:07.475Z","slug":"CVE-2026-47575","body":"## Overview\n\nNVIDIA GPU Display Driver for Windows contains a vulnerability in the display driver DIAG escape handler where a local unprivileged attacker may cause an integer overflow and out-of-bounds write. A successful exploit of this vulnerability might lead to denial of service, and code execution.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":43,"depthScoreParts":{"impact":42.9,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}