CVE-2026-45203
Imagination Technologies Graphics DDK
Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a memory write outside the permitted range of memory for the host kernel. A TOCTOU bug existed where a malicious driver could modify values in memory after firmware validation but before use.
- CVSS
- 7.8
- EPSS
- 0.09% 0.61% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.11