CVE-2026-24194
NVIDIA Display Driver for Linux contains a vulnerability in a kernel mode layer handler, where a user could cause improper permission handling. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.
CVSS
- Versión: 3.1
- Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Puntuación base: 7.8
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.15%
- Percentil entre todas las CVEs puntuadas: 4
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
🎯 Técnicas ATT&CK
Cómo se explota esta vulnerabilidad y qué consigue el atacante, en el lenguaje de MITRE ATT&CK.
- Explotación
T1068Exploitation for Privilege Escalationprivilege escalation95 % - Impacto secundario
T1005Data from Local Systemcollection85 % - Impacto secundario
T1565.001Stored Data Manipulationimpact80 %
AV:L/PR:L sin UI indica escalada local; kernel handler con improper permissions permite elevar privilegios, acceso a datos sensibles y modificar información del sistema GPU.
Inferido por nuestro agente de análisis a partir de la descripción oficial, el vector CVSS y la CWE, y comprobado por un supervisor. Puede contener errores.
🛡️ Mitigaciones ATT&CK que cubren estas técnicas
Tecnologías afectadas (1)
CWE
- CWE-281
Referencias
JSON original (NVD)
Mostrar
{
"id": "CVE-2026-24194",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2026-24194",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "none"
},
{
"automatable": "no"
},
{
"technicalImpact": "total"
}
],
"version": "2.0.3",
"timestamp": "2026-05-26T00:00:00+00:00"
}
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "psirt@nvidia.com",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 7.8,
"attackVector": "LOCAL",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "LOW",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.9,
"exploitabilityScore": 1.8
}
]
},
"affected": [
{
"source": "psirt@nvidia.com",
"affectedData": [
{
"vendor": "NVIDIA",
"product": "GeForce",
"versions": [
{
"status": "affected",
"version": "All driver versions prior to 595.71.05"
}
],
"platforms": [
"Linux(R595)"
],
"defaultStatus": "unaffected"
},
{
"vendor": "NVIDIA",
"product": "GeForce",
"versions": [
{
"status": "affected",
"version": "All driver versions prior to 580.159.03"
}
],
"platforms": [
"Linux(R580)"
],
"defaultStatus": "unaffected"
},
{
"vendor": "NVIDIA",
"product": "GeForce",
"versions": [
{
"status": "affected",
"version": "All driver versions prior to 535.309.01"
}
],
"platforms": [
"Linux(R535)"
],
"defaultStatus": "unaffected"
},
{
"vendor": "NVIDIA",
"product": "NVIDIA RTX, Quadro, NVS",
"versions": [
{
"status": "affected",
"version": "All driver versions prior to 595.71.05"
}
],
"platforms": [
"Linux(R595)"
],
"defaultStatus": "unaffected"
},
{
"vendor": "NVIDIA",
"product": "NVIDIA RTX, Quadro, NVS",
"versions": [
{
"status": "affected",
"version": "All driver versions prior to 580.159.03"
}
],
"platforms": [
"Linux(R580)"
],
"defaultStatus": "unaffected"
},
{
"vendor": "NVIDIA",
"product": "NVIDIA RTX, Quadro, NVS",
"versions": [
{
"status": "affected",
"version": "All driver versions prior to 535.309.01"
}
],
"platforms": [
"Linux(R535)"
],
"defaultStatus": "unaffected"
},
{
"vendor": "NVIDIA",
"product": "Tesla",
"versions": [
{
"status": "affected",
"version": "All driver versions prior to 595.71.05"
}
],
"platforms": [
"Linux(R595)"
],
"defaultStatus": "unaffected"
},
{
"vendor": "NVIDIA",
"product": "Tesla",
"versions": [
{
"status": "affected",
"version": "All driver versions prior to 580.159.03"
}
],
"platforms": [
"Linux(R580)"
],
"defaultStatus": "unaffected"
},
{
"vendor": "NVIDIA",
"product": "Tesla",
"versions": [
{
"status": "affected",
"version": "All driver versions prior to 535.309.01"
}
],
"platforms": [
"Linux(R535)"
],
"defaultStatus": "unaffected"
},
{
"vendor": "NVIDIA",
"product": "Guest driver",
"versions": [
{
"status": "affected",
"version": "595.58.03(All versions prior to and including vGPU 20.0)"
}
],
"platforms": [
"Linux(R595 vGPU 20)"
],
"defaultStatus": "unaffected"
},
{
"vendor": "NVIDIA",
"product": "Guest driver",
"versions": [
{
"status": "affected",
"version": "580.126.09(All versions prior to and including vGPU 19.4)"
}
],
"platforms": [
"Linux(R580 vGPU 19)"
],
"defaultStatus": "unaffected"
},
{
"vendor": "NVIDIA",
"product": "Guest driver",
"versions": [
{
"status": "affected",
"version": "535.288.01(All versions prior to and including vGPU 16.13)"
}
],
"platforms": [
"Linux(R535 vGPU 16)"
],
"defaultStatus": "unaffected"
},
{
"vendor": "NVIDIA",
"product": "Guest driver",
"versions": [
{
"status": "affected",
"version": "595.58.03(All versions up to and including the March 2026 release)"
}
],
"platforms": [
"Linux(Cloud Gaming)"
],
"defaultStatus": "unaffected"
}
]
}
],
"published": "2026-05-26T18:16:38.367",
"references": [
{
"url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24194",
"tags": [
"Third Party Advisory"
],
"source": "psirt@nvidia.com"
},
{
"url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5821",
"tags": [
"Vendor Advisory"
],
"source": "psirt@nvidia.com"
},
{
"url": "https://www.cve.org/CVERecord?id=CVE-2026-24194",
"tags": [
"Third Party Advisory"
],
"source": "psirt@nvidia.com"
}
],
"vulnStatus": "Analyzed",
"weaknesses": [
{
"type": "Secondary",
"source": "psirt@nvidia.com",
"description": [
{
"lang": "en",
"value": "CWE-281"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "NVIDIA Display Driver for Linux contains a vulnerability in a kernel mode layer handler, where a user could cause improper permission handling. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution."
},
{
"lang": "es",
"value": "El controlador de pantalla NVIDIA para Linux contiene una vulnerabilidad en un gestor de capa de modo kernel, donde un usuario podría causar un manejo inadecuado de permisos. Un exploit exitoso de esta vulnerabilidad podría conducir a denegación de servicio, escalada de privilegios, revelación de información, manipulación de datos y ejecución de código."
}
],
"lastModified": "2026-07-24T11:10:00.170",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:linux:*:*",
"vulnerable": true,
"matchCriteriaId": "3680577D-C135-46DA-BB23-F99CB82DB9D0",
"versionEndExcluding": "535.309.01",
"versionStartIncluding": "535"
},
{
"criteria": "cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:windows:*:*",
"vulnerable": true,
"matchCriteriaId": "01AD77B0-96FD-4885-86DD-EBBD602A69CA",
"versionEndExcluding": "539.72",
"versionStartIncluding": "535"
},
{
"criteria": "cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:linux:*:*",
"vulnerable": true,
"matchCriteriaId": "91CBB365-5B39-47B3-98AF-2DD11F3D6FA8",
"versionEndExcluding": "580.159.03",
"versionStartIncluding": "580"
},
{
"criteria": "cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:windows:*:*",
"vulnerable": true,
"matchCriteriaId": "433A7815-21F9-430A-8935-148EE26008BA",
"versionEndExcluding": "582.53",
"versionStartIncluding": "580"
},
{
"criteria": "cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:windows:*:*",
"vulnerable": true,
"matchCriteriaId": "813855BE-3C8C-4428-A75D-402281EDAAFA",
"versionEndExcluding": "595.36",
"versionStartIncluding": "595"
},
{
"criteria": "cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:linux:*:*",
"vulnerable": true,
"matchCriteriaId": "AFD145D7-0473-4AD3-9295-02F20621DAD9",
"versionEndExcluding": "595.71.05",
"versionStartIncluding": "595"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "psirt@nvidia.com"
}