Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Vulnerabilities

Chipmaker Patch Tuesday: Nvidia, AMD, Arm Issue Security Advisories

Major chipmakers announced patches for vulnerabilities recently discovered in their products.

Major chipmakers AMD, Arm, and Nvidia published new security advisories on Tuesday to notify customers of vulnerabilities recently discovered in their products.

AMD announced fixes for CVE-2026-43603, a NULL pointer dereference flaw in its Linux GPU kernel driver that could lead to system crashes and a denial-of-service (DoS) condition.

The company credited Maxime Rossi Bellom and Ramtine Tofighi Shirazi from SecMate for reporting the security defect.

“According to the researchers’ report, when an application invokes a specific graphics memory management interface to perform a ‘clear’ operation under certain compute-processing conditions, the driver may fail to validate an internal data reference before use,” AMD notes in its advisory.

The company rolled out fixes for EPYC Athlon, Ryzen, Radeon, and Instinct processors in July. It plans to release the patches for the EPYC Embedded and Ryzen Embedded processors in October.

Arm published an advisory covering nine vulnerabilities in its Mali GPUs that could allow access to already freed memory or to sensitive kernel information, or could lead to a denial-of-service (DoS) condition.

Advertisement. Scroll to continue reading.

The company has released fixes for the Valhall GPU and Arm 5th Gen GPU Architecture kernel and userspace drivers. The Bifrost GPU kernel and userspace drivers are also affected.

Nvidia announced a software update for the Triton Inference Server for Linux that resolves two high-severity security defects. The first could lead to a DoS condition, while the second could lead to information disclosure, data tampering, and DoS conditions.

At the time of publishing, Intel had not released new security advisories since the previous Patch Tuesday.

Related: ICS Patch Tuesday: Schneider Electric, Siemens Fix Critical Flaws

Related: Ivanti Patches Critical Flaws Across Enterprise Security Products

Related: Chrome 153 Patches Seventh Zero-Day of 2026

Written By

Ionut Arghire is an international correspondent for SecurityWeek.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join as speakers examine the various components of ASM strategy, the push to mandate continuous asset visibility and inventory tools, and the use of red-teaming, bug bounties and pen-tests in modern security programs.

Register

In this live webinar, learn how to define your minimum viable business, identify the systems it depends on, measure actual recovery time against business requirements, and present the gaps to the board as measurable risk.

Register

People on the Move

Amazon has elected Kevin Mandia to its Board of Directors.

Gigamon has named Grant Yacomeni as Chief Information Security Officer.

SSH Communications Security has appointed Lars Bell as Chief Executive Officer.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.