Use-after-free in NVIDIA Linux GPU Display Driver and NVIDIA Windows GPU Display Driver - CVE-2026-24200
Published: May 19, 2026
Vulnerability details
The vulnerability allows a local user to execute arbitrary code, escalate privileges, disclose sensitive information, tamper with data, or cause a denial of service.
The vulnerability exists due to use-after-free in the virtual GPU manager when handling stack memory. A local user can trigger a use-after-free for stack memory to execute arbitrary code, escalate privileges, disclose sensitive information, tamper with data, or cause a denial of service.
Affected software
NVIDIA Windows GPU Display Driver
How to mitigate CVE-2026-24200
NVIDIA Windows GPU Display Driver - addressed in versions 582.53, 596.36