CVE-2026-45203
EUVD-2026-4304310.07.2026, 21:16
Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a memory write outside the permitted range of memory for the host kernel. A TOCTOU bug existed where a malicious driver could modify values in memory after firmware validation but before use.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| imaginationtech | ddk | 𝑥 < 26.1 |
| imaginationtech | ddk | 26.1:rtm1 |
𝑥
= Vulnerable software versions