CVE-2026-45201
N/A
N/A
Summary
Software installed and run as a non-privileged user may conduct improper GPU system calls to pass invalid log2 page size when allocating physical pages leading to OOB read and/or write due to improper validation of the said value.
Such crafted log2 page size could lead to 4K pages being treated as higher order pages and allowing read and/or write access to the memory beyond 4K threshold.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Imagination Technologies | Graphics DDK | 1.18 RTM2 | unaffected |
| Imagination Technologies | Graphics DDK | 23.2 RTM2 | unaffected |
| Imagination Technologies | Graphics DDK | 24.2 RTM2 | affected |
| Imagination Technologies | Graphics DDK | 25.1 RTM2 <= 25.3 RTM | affected |
| Imagination Technologies | Graphics DDK | 26.1 RTM1 | affected |
| Imagination Technologies | Graphics DDK | 26.1 RTM2 | unaffected |
Weaknesses
- CWE-1284: CWE-1284: Improper Validation of Specified Quantity in Input
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.