Browse all 1006 CVE security advisories affecting NVIDIA. AI-powered Chinese analysis, POCs, and references for each vulnerability.
NVIDIA primarily designs graphics processing units and system-on-chip units for gaming, professional visualization, and data centers. With 703 recorded Common Vulnerabilities and Exposures, the company’s attack surface is heavily influenced by its complex software stack, including CUDA and driver frameworks. Historically, critical flaws often involve remote code execution and privilege escalation within kernel-mode drivers, allowing attackers to gain unauthorized system access. While hardware vulnerabilities are rare, software components frequently exhibit issues such as buffer overflows and improper input validation. Notable incidents have included critical bugs in GPU drivers that permitted local privilege escalation, highlighting risks in the underlying operating system integration. The firm maintains rigorous security protocols, yet the breadth of its ecosystem, spanning from consumer GPUs to enterprise AI infrastructure, necessitates continuous patching and vulnerability management to mitigate potential exploitation vectors across diverse deployment environments.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-65112 | NVIDIA Linux控制器无限资源消耗致拒绝服务 — Infrastructure Controller CWE-400 | 6.5 | Medium | 2026-09-22 |
| CVE-2026-65118 | NVIDIA Linux基础设施控制器证书验证漏洞 — Infrastructure Controller CWE-295 | 7.5 | High | 2026-09-22 |
| CVE-2026-65117 | NVIDIA Linux Infrastructure Controller硬编码密码漏洞 — Infrastructure Controller CWE-259 | 5.0 | Medium | 2026-09-22 |
| CVE-2026-65115 | NVIDIA Linux控制器资源耗尽致DoS — Infrastructure Controller CWE-400 | 6.5 | Medium | 2026-09-22 |
| CVE-2026-65114 | NVIDIA Infrastructure Controller Linux身份验证缺失漏洞 — Infrastructure Controller CWE-306 | 8.3 | High | 2026-09-22 |
| CVE-2026-65113 | NVIDIA Linux控制器硬编码凭证漏洞 — Infrastructure Controller CWE-798 | 9.8 | Critical | 2026-09-22 |
| CVE-2026-65130 | NVIDIA Linux控制器命令注入漏洞 — Infrastructure Controller CWE-78 | 8.0 | High | 2026-09-22 |
| CVE-2026-65129 | NVIDIA Linux控制器证书验证不当漏洞 — Infrastructure Controller CWE-295 | 6.7 | Medium | 2026-09-22 |
| CVE-2026-65128 | NVIDIA Linux控制器SQL注入漏洞 — Infrastructure Controller CWE-89 | 8.8 | High | 2026-09-22 |
| CVE-2026-65127 | NVIDIA Linux控制器调试信息泄露漏洞 — Infrastructure Controller CWE-1258 | 4.1 | Medium | 2026-09-22 |
| CVE-2026-65126 | NVIDIA Linux控制器行为执行不当致数据篡改 — Infrastructure Controller CWE-841 | 5.0 | Medium | 2026-09-22 |
| CVE-2026-65125 | NVIDIA Linux Infrastructure Controller路径控制漏洞 — Infrastructure Controller CWE-73 | 6.6 | Medium | 2026-09-22 |
| CVE-2026-65124 | NVIDIA Linux Infrastructure Controller XML注入漏洞 — Infrastructure Controller CWE-91 | 5.9 | Medium | 2026-09-22 |
| CVE-2026-65121 | NVIDIA Linux控制器认证不当漏洞 — Infrastructure Controller CWE-287 | 8.2 | High | 2026-09-22 |
This page lists every published CVE security advisory associated with NVIDIA. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.