{"api_version":"1","generated_at":"2026-06-26T18:57:22+00:00","cve":"CVE-2026-45195","urls":{"html":"https://cve.report/CVE-2026-45195","api":"https://cve.report/api/cve/CVE-2026-45195.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2026-45195","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2026-45195"},"summary":{"title":"GPU DDK - rgxfw_set_mips_fault_address(&psInit->sFaultPhysAddr) is untrusted","description":"Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a memory read or write outside the permitted range of memory for the host kernel.\n\n\n\nAddresses passed to the GPU Firmware can be used by the Firmware for more privileged memory accesses than are permitted by the system.","state":"PUBLISHED","assigner":"imaginationtech","published_at":"2026-06-26 16:16:30","updated_at":"2026-06-26 16:16:30"},"problem_types":["CWE-280","CWE-280 CWE-280: Improper Handling of Insufficient Permissions or Privileges (4.15)"],"metrics":[],"references":[{"url":"https://www.imaginationtech.com/gpu-driver-vulnerabilities/","name":"https://www.imaginationtech.com/gpu-driver-vulnerabilities/","refsource":"367425dc-4d06-4041-9650-c2dc6aaa27ce","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-45195","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-45195","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"Imagination Technologies","product":"Graphics DDK","version":"affected 1.18 RTM custom","platforms":["Linux","Android"]},{"source":"CNA","vendor":"Imagination Technologies","product":"Graphics DDK","version":"affected 23.2 RTM custom","platforms":["Linux","Android"]},{"source":"CNA","vendor":"Imagination Technologies","product":"Graphics DDK","version":"affected 24.2 RTM custom","platforms":["Linux","Android"]},{"source":"CNA","vendor":"Imagination Technologies","product":"Graphics DDK","version":"affected 25.1 RTM 25.3 RTM custom","platforms":["Linux","Android"]},{"source":"CNA","vendor":"Imagination Technologies","product":"Graphics DDK","version":"affected 26.1 RTM custom","platforms":["Linux","Android"]},{"source":"CNA","vendor":"Imagination Technologies","product":"Graphics DDK","version":"unaffected 26.2 RTM custom","platforms":["Linux","Android"]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"cna":{"affected":[{"defaultStatus":"unknown","platforms":["Linux","Android"],"product":"Graphics DDK","vendor":"Imagination Technologies","versions":[{"status":"affected","version":"1.18 RTM","versionType":"custom"},{"status":"affected","version":"23.2 RTM","versionType":"custom"},{"status":"affected","version":"24.2 RTM","versionType":"custom"},{"lessThanOrEqual":"25.3 RTM","status":"affected","version":"25.1 RTM","versionType":"custom"},{"status":"affected","version":"26.1 RTM","versionType":"custom"},{"status":"unaffected","version":"26.2 RTM","versionType":"custom"}]}],"descriptions":[{"lang":"en","supportingMedia":[{"base64":false,"type":"text/html","value":"<p>Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a memory read or write outside the permitted range of memory for the host kernel.</p><p>Addresses passed to the GPU Firmware can be used by the Firmware for more privileged memory accesses than are permitted by the system.</p>"}],"value":"Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a memory read or write outside the permitted range of memory for the host kernel.\n\n\n\nAddresses passed to the GPU Firmware can be used by the Firmware for more privileged memory accesses than are permitted by the system."}],"impacts":[{"capecId":"CAPEC-480","descriptions":[{"lang":"en","value":"CAPEC - CAPEC-480: Escaping Virtualization (Version 3.9)"}]}],"problemTypes":[{"descriptions":[{"cweId":"CWE-280","description":"CWE-280: Improper Handling of Insufficient Permissions or Privileges (4.15)","lang":"en","type":"CWE"}]}],"providerMetadata":{"dateUpdated":"2026-06-26T15:18:20.469Z","orgId":"367425dc-4d06-4041-9650-c2dc6aaa27ce","shortName":"imaginationtech"},"references":[{"url":"https://www.imaginationtech.com/gpu-driver-vulnerabilities/"}],"source":{"discovery":"UNKNOWN"},"title":"GPU DDK - rgxfw_set_mips_fault_address(&psInit->sFaultPhysAddr) is untrusted","x_generator":{"engine":"Vulnogram 0.2.0"}}},"cveMetadata":{"assignerOrgId":"367425dc-4d06-4041-9650-c2dc6aaa27ce","assignerShortName":"imaginationtech","cveId":"CVE-2026-45195","datePublished":"2026-06-26T15:18:20.469Z","dateReserved":"2026-05-11T10:58:04.162Z","dateUpdated":"2026-06-26T15:18:20.469Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.2"},"nvd":{"publishedDate":"2026-06-26 16:16:30","lastModifiedDate":"2026-06-26 16:16:30","problem_types":["CWE-280","CWE-280 CWE-280: Improper Handling of Insufficient Permissions or Privileges (4.15)"],"metrics":[],"configurations":[]},"legacy_mitre":{"record":{"CveYear":"2026","CveId":"45195","Ordinal":"1","Title":"GPU DDK - rgxfw_set_mips_fault_address(&psInit->sFaultPhysAddr) ","CVE":"CVE-2026-45195","Year":"2026"},"notes":[{"CveYear":"2026","CveId":"45195","Ordinal":"1","NoteData":"Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a memory read or write outside the permitted range of memory for the host kernel.\n\n\n\nAddresses passed to the GPU Firmware can be used by the Firmware for more privileged memory accesses than are permitted by the system.","Type":"Description","Title":"GPU DDK - rgxfw_set_mips_fault_address(&psInit->sFaultPhysAddr) "}]}}}