NVIDIA GPU Driver Vulnerability Opens Door to Elevated Privileges
ID: 5a834b7d-b159-5372-a136-234012fb8659
STIX ID: report--5a834b7d-b159-5372-a136-234012fb8659
Feed Name: GBHackers
NVIDIA published a security bulletin (Jan 27, 2026) reporting five vulnerabilities in its GPU drivers — including use-after-free and integer overflow flaws (CVE-2025-33217, CVE-2025-33218, CVE-2025-33219, CVE-2025-33220) with CVSS 7.8 enabling local code execution and privilege escalation across Windows, Linux, and vGPU platforms, plus a medium-severity NULL pointer dereference (CVE-2025-33237). Vendor-provided driver updates across R590, R580, R570, and R535 branches are available and users should apply the specified patched driver versions to mitigate these issues.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
