imaginationtech
Hardware Firmwarecommercial
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting imaginationtech.
- CVE-2026-22166GPU DDK - Write UAF in KEGLGetPoolBuffers, WebGL reachable8.1
- CVE-2026-22165GPU DDK - UAF read of GLES3Context::psDrawParams and GLES3Context::psMode and UAF read/write of RMJob::apsCCBs8.1
- CVE-2026-22167GPU DDK - Cache resident PM buffers writable by other GPU requestors, leading to arbitrary write to physical memory7.8
- CVE-2026-22163GPU DDK - Unsafe writing of MMU PT entries on systems with 32-bit host CPU7.8
- CVE-2026-21732GPU DDK - libusc OOB write at ConvertSwitchToArrayLookupBP during WebGPU shader compilation9.6
- CVE-2026-21736GPU DDK - Insufficient permission check in PhysmemWrapExtMem() when write attribute support enabled4.4
- CVE-2025-13952GPU DDK - libusc UAF via WebGPU shaders at MergeConsecutiveBarriersBP9.8
- CVE-2025-10865GPU DDK - DevmemIntGetReservationData does not ref the PMR it returns7.8
- CVE-2025-58411GPU DDK - Reservation::psMappedPMR can change while used by a freelist -> UAF8.8
- CVE-2025-58409GPU DDK - Disguised freelist buffers passed to RGXCreateHWRTDataSet can cause arbitrary physical memory writes corrupting memory3.5
- CVE-2025-25176GPU DDK - GPU Register value contents leaked from secure workloads to non-secure world9.1
- CVE-2025-58408GPU DDK - KASAN Read UAF in the PVRSRVBridgeRGXSubmitTransfer2 due to improper error handling code5.9
- CVE-2025-58407GPU DDK - TOCTOU bug affecting psFWMemContext->uiPageCatBaseRegSet7.4
- CVE-2025-58410GPU DDK - Multiple calls into PhysmemGEMPrimeExport can inherit write access permission for an existing read-only dma_buf import PMR7.5
- CVE-2025-46711GPU DDK - NULL Pointer dereference occurs in LockHandle on bridge entry when connection misused5.5