Vulnerabilities

Chipmaker Patch Tuesday: Nvidia, AMD, Arm Issue Security Advisories

Major chipmakers announced patches for vulnerabilities recently discovered in their products.

Major chipmakers announced patches for vulnerabilities recently discovered in their products.

Major chipmakers AMD, Arm, and Nvidia published new security advisories on Tuesday to notify customers of vulnerabilities recently discovered in their products.

AMD announced fixes for CVE-2026-43603, a NULL pointer dereference flaw in its Linux GPU kernel driver that could lead to system crashes and a denial-of-service (DoS) condition.

The company credited Maxime Rossi Bellom and Ramtine Tofighi Shirazi from SecMate for reporting the security defect.

“According to the researchers’ report, when an application invokes a specific graphics memory management interface to perform a ‘clear’ operation under certain compute-processing conditions, the driver may fail to validate an internal data reference before use,” AMD notes in its advisory.

The company rolled out fixes for EPYC Athlon, Ryzen, Radeon, and Instinct processors in July. It plans to release the patches for the EPYC Embedded and Ryzen Embedded processors in October.

Arm published an advisory covering nine vulnerabilities in its Mali GPUs that could allow access to already freed memory or to sensitive kernel information, or could lead to a denial-of-service (DoS) condition.

Advertisement. Scroll to continue reading.

The company has released fixes for the Valhall GPU and Arm 5th Gen GPU Architecture kernel and userspace drivers. The Bifrost GPU kernel and userspace drivers are also affected.

Nvidia announced a software update for the Triton Inference Server for Linux that resolves two high-severity security defects. The first could lead to a DoS condition, while the second could lead to information disclosure, data tampering, and DoS conditions.

At the time of publishing, Intel had not released new security advisories since the previous Patch Tuesday.

Related: ICS Patch Tuesday: Schneider Electric, Siemens Fix Critical Flaws

Related: Ivanti Patches Critical Flaws Across Enterprise Security Products

Related: Chrome 153 Patches Seventh Zero-Day of 2026

Related Content

Vulnerabilities

The record-breaking September security update fixes two exploited privilege-escalation zero-days and 20 potentially wormable vulnerabilities.

Vulnerabilities

Tracked as CVE-2026-75650, the exploited defect allows unauthenticated attackers to execute arbitrary code.

Vulnerabilities

The proof-of-concept (PoC) exploits lead to privilege escalation, spawning a shell with System privileges.

Artificial Intelligence

The deal highlights Nvidia’s push to champion increasingly popular open-source AI models.

Vulnerabilities

Adobe and Nvidia each published several advisories, including ones that address critical vulnerabilities in their products.

Artificial Intelligence

AI infrastructure, including advanced semiconductors mostly made in Taiwan, has become a key point of competition between the U.S. and China.

Vulnerabilities

Intel has informed customers about several high-severity vulnerabilities that can lead to privilege escalation and even code execution.

Artificial Intelligence

The Nvidia-led coalition aims to give defenders more open tools for testing, auditing and protecting AI models and agents.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version