๐Ÿ” CVE Alert

CVE-2026-41157

UNKNOWN 0.0

GPU DDK - OOB Write in CalculateNPOTTwiddleSparsePageMap3D

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

A web page that contains unusual WebGPU content loaded into the GPU GLES render process and can trigger an out-of-bound write in the GPU user-space driver, leading to memory corruption and possible browser/GPU process crash. The software computes a required memory size from untrusted input, but integer overflow can produce a value smaller than needed. Subsequent write operations may then occur past the intended memory boundary, corrupting adjacent memory and causing process instability or termination.

CWE CWE-787
Vendor imagination technologies
Product graphics ddk
Published Jun 12, 2026
Stay Ahead of the Next One

Get instant alerts for imagination technologies graphics ddk

Be the first to know when new unknown vulnerabilities affecting imagination technologies graphics ddk are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Imagination Technologies / Graphics DDK
1.18 RTM 23.2 RTM 24.2 RTM 25.1 RTM โ‰ค 25.3 RTM 26.1 RTM

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
imaginationtech.com: https://www.imaginationtech.com/gpu-driver-vulnerabilities/