GPU DDK - Dimension Mismatch and Integer Truncation in PMRDevPhysAddrOSMem
Summary
| CVE | CVE-2026-49746 |
|---|---|
| State | PUBLISHED |
| Assigner | imaginationtech |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-08-07 03:16:20 UTC |
| Updated | 2026-08-07 03:16:20 UTC |
| Description | Software installed and run as a non-privileged user may conduct improper GPU system calls to cause OOB read kernel memory access and in certain cases cause GPU UAF of arbitrary pages. Incorrect validation of array index can lead to OOB read and potentially to GPU UAF of arbitrary pages. |
Risk And Classification
Problem Types: CWE-823 | CWE-823 CWE - CWE-823: Use of Out-of-range Pointer Offset (4.16)
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Imagination Technologies | Graphics DDK | affected 1.18 RTM2 custom | Linux, Android |
| CNA | Imagination Technologies | Graphics DDK | affected 23.2 RTM2 custom | Linux, Android |
| CNA | Imagination Technologies | Graphics DDK | affected 24.2 RTM2 custom | Linux, Android |
| CNA | Imagination Technologies | Graphics DDK | affected 25.1 RTM2 25.3 RTM custom | Linux, Android |
| CNA | Imagination Technologies | Graphics DDK | affected 26.1 RTM1 custom | Linux, Android |
| CNA | Imagination Technologies | Graphics DDK | unaffected 26.1 RTM2 custom | Linux, Android |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| www.imaginationtech.com/gpu-driver-vulnerabilities | 367425dc-4d06-4041-9650-c2dc6aaa27ce | www.imaginationtech.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.