Improper GPU System Call Vulnerability in Imagination Technologies Software
CVE-2026-34192

7.7HIGH

Key Information:

Vendor
CVE Published:
19 June 2026

What is CVE-2026-34192?

This vulnerability allows a non-privileged user to perform improper GPU system calls that lead to a use-after-free condition of GPU page tables. The failure to properly handle an error path before freeing the physical memory allocated for MMU page tables creates a significant security risk, allowing potential exploitation that could compromise system integrity.

Affected Version(s)

Graphics DDK Linux 1.18 RTM

Graphics DDK Linux 23.2 RTM

Graphics DDK Linux 24.2 RTM

References

CVSS V3.1

Score:
7.7
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.