Out of Bounds Write Vulnerability in GPU Drivers by Imagination Technologies
CVE-2026-34195

8.8HIGH

Key Information:

Vendor
CVE Published:
12 June 2026

What is CVE-2026-34195?

The identified vulnerability in Imagination Technologies' GPU drivers allows software running with non-privileged user rights to execute GPU sparse memory API calls that can lead to an out of bounds write in the kernel. This flaw arises from improper indexing of internal state during the sparse allocation remapping process, potentially compromising the security and stability of the system.

Affected Version(s)

Graphics DDK Linux 24.2 RTM

Graphics DDK Linux 25.1 RTM <= 25.3 RTM

Graphics DDK Linux 1.18 RTM

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.