Improper GPU Driver IOCTL Calls Lead to Kernel Heap Corruption in Imagination Technologies' GPU Driver
CVE-2026-45200

Currently unrated

Key Information:

Vendor
CVE Published:
4 September 2026

What is CVE-2026-45200?

A vulnerability exists in the GPU driver from Imagination Technologies, where software running as a non-privileged user can execute improper IOCTL calls. This flaw allows for the creation of specific allocation scenarios that, upon freeing, lead to a double free error and result in kernel heap corruption. The issue manifests when a crafted combination of flags is used on the allocation interface, triggering an erroneous double-free event. This vulnerability can potentially lead to system instability and security risks if exploited.

Affected Version(s)

Graphics DDK Linux 24.2 RTM2

Graphics DDK Linux 25.1 RTM2 <= 25.3 RTM

Graphics DDK Linux 26.1 RTM1

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.