CVE-2026-49744
Imagination Technologies Graphics DDK
Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write of data outside the Guest's virtualised GPU memory. Out of bounds accesses triggered by malware introduced to a Guest KMD could allow privilege escalation which escapes virtualization boundaries.
- CVSS
- 7.8
- EPSS
- 0.11% 1.49% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.24