CVE-2026-49744
GPU DDK - Unchecked ui32TracePointer in rgxfw_log_ex()
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write of data outside the Guest's virtualised GPU memory. Out of bounds accesses triggered by malware introduced to a Guest KMD could allow privilege escalation which escapes virtualization boundaries.
| CWE | CWE-823 |
| Vendor | imagination technologies |
| Product | graphics ddk |
| Published | Jul 24, 2026 |
Stay Ahead of the Next One
Get instant alerts for imagination technologies graphics ddk
Be the first to know when new unknown vulnerabilities affecting imagination technologies graphics ddk are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Imagination Technologies / Graphics DDK
1.18 RTM2 23.2 RTM2 24.2 RTM2 25.1 RTM2 โค 25.3 RTM