Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.9
CVE-2026-65093: NVIDIA OpenShell for Linux can let attackers break out of its sandbox
CVE-2026-65093 · published 9 days ago
Summary
The OpenShell component on Linux systems from NVIDIA has a weakness that could let a malicious user escape the protective sandbox it runs in. If exploited, they could run their own code, gain higher system rights, alter data, or view confidential information. Apply the latest NVIDIA patches or updates as soon as possible to close this gap.
What to do
The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| nvidia | openshell |
<= 0.0.33 cpe:2.3:a:nvidia:openshell:*:*:*:*:*:*:*:* |
Original advisory text
NVIDIA OpenShell for Linux contains a vulnerability where an attacker could cause a sandbox escape. A successful exploit of this vulnerability might lead to code execution, escalation of privileges...
NVIDIA OpenShell for Linux contains a vulnerability where an attacker could cause a sandbox escape. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.
References
- https://github.com/NVIDIA/product-security/tree/main/2026/5872 Patch
- https://nvd.nist.gov/vuln/detail/CVE-2026-65093 US Government Resource
- https://www.cve.org/CVERecord?id=CVE-2026-65093 Third Party Advisory
Severity
9.9
Critical
CVSS 3.1: 9.9 (NVD)
Exploitation
EPSS <1%
Type
CWE-427Uncontrolled Search Path Element
Timeline
Published25 Aug 2026
Updated2 Sep 2026
First seen1 Sep 2026
Sources
CVE-2026-65093 · NVD
Monitor software like this
Free during beta