GPU Memory Leak and Kernel Heap Corruption in Imagination Technologies Software
CVE-2026-45202
Currently unrated
What is CVE-2026-45202?
A security vulnerability exists within the Graphics Driver Software developed by Imagination Technologies, where software running as a non-privileged user can conduct GPU system calls. This flaw may result in significant GPU memory leaks and potential kernel heap corruption. The issue arises from improper handling of memory allocations during free paths, which fails to maintain state data of upgraded higher order allocations, possibly leading to a double free event. Organizations using these drivers should take immediate action to apply necessary updates to mitigate risks associated with this vulnerability.
Affected Version(s)
Graphics DDK Linux 1.18 RTM2
Graphics DDK Linux 23.2 RTM2
Graphics DDK Linux 24.2 RTM2
