CVE-2026-24193 is a high-severity out-of-bounds write vulnerability in the kernel-mode layer of the NVIDIA Display Driver for Windows and Linux. The flaw affects NVIDIA GPU display driver branches R580 and R535, while R590 and R595 are not affected. On Windows, exposure in the R580 branch is limited to systems using Maxwell, Volta, and Pascal GPUs; the R535 branch is affected across supported GPU architectures on both Windows and Linux. Available technical analysis indicates the issue is tied to insufficient bounds enforcement in internal layout structure tracking, with the patched driver constraining a legacy 0x360-byte limit to a validated 0x350-byte boundary to prevent out-of-bounds memory writes. Because the vulnerable component operates in kernel mode, successful exploitation can corrupt kernel memory and compromise system integrity.
Mallory correlates every CVE against your assets, your vendors, and active adversary campaigns. Know which vulnerabilities matter for you, not just which ones are loud.
What it means. What to do now. Patch path, mitigations, and the assume-compromise checklist.
What an attacker gets, and what they’ve been doing with it.
If you can’t patch tonight, do this now.
Patch, then assume compromise.
No public exploits tracked yet. Mallory keeps watching.
No public exploit code observed for this vulnerability.
Products and vendors Mallory has correlated with this vulnerability. Open in Mallory to drill down to specific CPE configurations and version ranges.
Vendor-confirmed product mapping. Mallory continuously reconciles this list against your asset inventory.
7 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
A privilege escalation vulnerability in NVIDIA's Windows Kernel Core Display Driver (nvlddmkm.sys) involving out-of-bounds memory writes due to insufficient internal layout structure bounds validation.
A high-severity out-of-bounds write vulnerability in the NVIDIA GPU Display Driver kernel-mode layer that can allow local attackers with low privileges to achieve privilege escalation, code execution, denial of service, information disclosure, and data tampering on affected Windows and Linux systems.
An out-of-bounds write vulnerability in NVIDIA Windows and Linux display drivers that could cause denial of service, code execution, and data tampering.
A referenced vulnerability affecting the NVIDIA GPU Driver for Unix/Linux systems.
Query your assets running an affected version, and investigate the blast radius.
Every observed campaign linking this CVE to a named adversary.
Malware families riding this exploit, with evidence and IOCs.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Cross-references every affected SKU, including bundled OEM variants.
Community discussion across Reddit, Mastodon, and other social sources.