Nvidia Patched 114 GPU Driver Flaws, Including Critical 9.9 Vulnerability
Nvidia has released a security bulletin to address 114 vulnerabilities in its GPU display driver and vGPU software, including one critical flaw rated 9.9.
The vulnerability, CVE-2026-47574, is located in the NVIDIA vGPU Virtual GPU Manager for Linux and allows an attacker to cause incorrect resource transfer between spheres, potentially leading to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Nvidia credits outside researchers for most of the vulnerabilities, including a Seoul National University security group, Xiaomi's ShadowBlade Security Lab, and the TrendAI Zero Day Initiative. However, Nvidia does not confirm whether any of these flaws have been exploited.
The patched Linux R580 build is in the branch that Valve flagged as breaking Steam Link VR on Linux, but Nvidia notes that this is a functional regression rather than one of the security vulnerabilities.