Imagination Technologies Graphics Ddk vulnerabilities

56 known vulnerabilities affecting imagination_technologies/graphics_ddk.

Total CVEs
56
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL4HIGH38MEDIUM12LOW2

Vulnerabilities

Page 2 of 3
CVE-2025-46710MEDIUMCVSS 5.7≥ 1.15 RTM, ≤ 24.2 RTM22025-06-16
CVE-2025-46710 [MEDIUM] CWE-416 CVE-2025-46710: Possible kernel exceptions caused by reading and writing kernel heap data after free. Possible kernel exceptions caused by reading and writing kernel heap data after free.
nvd
CVE-2025-25179HIGHCVSS 7.8v1.15 RTMv1.17 RTM+2 more2025-06-02
CVE-2025-25179 [HIGH] CWE-280 CVE-2025-25179: Software installed and run as a non-privileged user may conduct improper GPU system calls to subvert Software installed and run as a non-privileged user may conduct improper GPU system calls to subvert GPU HW to write to arbitrary physical memory pages.
nvd
CVE-2025-1706HIGHCVSS 7.5≥ 24.1 RTM, ≤ 24.3 RTM2025-05-17
CVE-2025-1706 [HIGH] CWE-416 CVE-2025-1706: Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kernel exceptions.
nvd
CVE-2024-47893MEDIUMCVSS 6.5≥ 1.15 RTM, ≤ 24.3 RTM2025-05-17
CVE-2024-47893 [MEDIUM] CWE-823 CVE-2024-47893: Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmw Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmware to read and/or write data outside the Guest's virtualised GPU memory.
nvd
CVE-2025-0467HIGHCVSS 8.2≥ 1.15 RTM, ≤ 24.3 RTM2025-04-18
CVE-2025-0467 [HIGH] CWE-823 CVE-2025-0467: Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmw Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmware to write data outside the Guest's virtualised GPU memory.
nvd
CVE-2025-0468HIGHCVSS 7.1≥ 1.15 RTM, ≤ 24.3 RTM2025-04-04
CVE-2025-0468 [HIGH] CWE-280 CVE-2025-0468: Software installed and run as a non-privileged user may conduct improper GPU system calls to subvert Software installed and run as a non-privileged user may conduct improper GPU system calls to subvert GPU HW to write to arbitrary physical memory pages. Under certain circumstances this exploit could be used to corrupt data pages not allocated by the GPU driver but memory pages in use by the kernel and drivers running on the platform altering their beh
nvd
CVE-2025-25178HIGHCVSS 7.8≥ 1.15 RTM, ≤ 24.3 RTM2025-04-04
CVE-2025-25178 [HIGH] CWE-1284 CVE-2025-25178: Software installed and run as a non-privileged user may conduct improper GPU system calls to cause k Software installed and run as a non-privileged user may conduct improper GPU system calls to cause kernel system memory corruption.
nvd
CVE-2025-0478HIGHCVSS 7.8≥ 1.15 RTM, ≤ 24.3 RTM22025-03-24
CVE-2025-0478 [HIGH] CWE-280 CVE-2025-0478: Software installed and run as a non-privileged user may conduct improper GPU system calls to issue r Software installed and run as a non-privileged user may conduct improper GPU system calls to issue reads and writes to arbitrary physical memory pages. Under certain circumstances this exploit could be used to corrupt data pages not allocated by the GPU driver but memory pages in use by the kernel and drivers running on the platform, altering their beh
nvd
CVE-2025-0835HIGHCVSS 7.8≥ 23.2 RTM, ≤ 24.2 RTM22025-03-24
CVE-2025-0835 [HIGH] CWE-416 CVE-2025-0835: Software installed and run as a non-privileged user may conduct improper GPU system calls to corrupt Software installed and run as a non-privileged user may conduct improper GPU system calls to corrupt kernel heap memory.
nvd
CVE-2024-12837HIGHCVSS 7.8≥ 1.15 RTM, ≤ 24.3 RTM2025-03-07
CVE-2024-12837 [HIGH] CWE-416 CVE-2024-12837: Software installed and run as a non-privileged user may conduct improper GPU system calls to corrupt Software installed and run as a non-privileged user may conduct improper GPU system calls to corrupt kernel heap memory.
nvd
CVE-2024-12576MEDIUMCVSS 5.5≥ 1.15 RTM, ≤ 24.3 RTM2025-03-07
CVE-2024-12576 [MEDIUM] CWE-822 CVE-2024-12576: Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger a crash of the FW running on the GPU freezing graphics output.
nvd
CVE-2024-12577HIGHCVSS 7.3≥ 1.15 RTM, ≤ 24.3 RTM2025-02-22
CVE-2024-12577 [HIGH] CWE-823 CVE-2024-12577: Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmw Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmware to write data outside the Guest's virtualised GPU memory.
nvd
CVE-2024-52939HIGHCVSS 7.8≥ 1.15 RTM, ≤ 24.3 RTM2025-02-22
CVE-2024-52939 [HIGH] CWE-823 CVE-2024-52939: Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmwa Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write data outside the Guest's virtualised GPU memory.
nvd
CVE-2024-46975HIGHCVSS 7.9≥ 1.15 RTM, ≤ 24.3 RTM2025-02-22
CVE-2024-46975 [HIGH] CWE-270 CVE-2024-46975: Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmw Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmware to write data into another Guest's virtualised GPU memory.
nvd
CVE-2024-47896LOWCVSS 3.3≥ 1.15 RTM, ≤ 24.3 RTM2025-02-22
CVE-2024-47896 [LOW] CWE-823 CVE-2024-47896: Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmw Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmware to write data outside the Guest's virtualised GPU memory.
nvd
CVE-2024-47898HIGHCVSS 7.8≥ 1.17 RTM, ≤ 24.3 RTM22025-01-31
CVE-2024-47898 [HIGH] CWE-416 CVE-2024-47898: Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kernel exceptions.
nvd
CVE-2024-47899HIGHCVSS 7.8≥ 1.17 RTM, ≤ 24.3 RTM22025-01-31
CVE-2024-47899 [HIGH] CWE-416 CVE-2024-47899: Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kernel exceptions.
nvd
CVE-2024-47900HIGHCVSS 7.8≥ 1.15 RTM, ≤ 24.3 RTM22025-01-31
CVE-2024-47900 [HIGH] CWE-823 CVE-2024-47900: Software installed and run as a non-privileged user may conduct improper GPU system calls to access Software installed and run as a non-privileged user may conduct improper GPU system calls to access OOB kernel memory.
nvd
CVE-2024-47891HIGHCVSS 7.8≥ 1.15 RTM, ≤ 24.3 RTM22025-01-31
CVE-2024-47891 [HIGH] CWE-416 CVE-2024-47891: Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kernel exceptions.
nvd
CVE-2024-46974HIGHCVSS 7.8≥ 1.15 RTM, ≤ 24.3 RTM2025-01-31
CVE-2024-46974 [HIGH] CWE-266 CVE-2024-46974: Software installed and run as a non-privileged user may conduct improper read/write operations on im Software installed and run as a non-privileged user may conduct improper read/write operations on imported/exported DMA buffers.
nvd