CVE-2026-45198 Details
Description
Kernel software from a non-secure operating system on a platform with Trusted Execution Environment support, may cause GPU Firmware to boot up using data from non-secure memory. The GPU thread of control (Firmware) uses a pointer from non-secure memory belonging to the Rich Execution Environment (REE) when saving or retrieving internal data between the tightly coupled private memory to main memory. An attacker with control over the REE kernel may modify the pointer value, corrupting the data used by the GPU Firmware.
A vulnerability exists in the GPU firmware of Imagination Technologies' graphics drivers, specifically in the context of a Trusted Execution Environment (TEE) on a non-secure operating system. The issue arises because the GPU firmware can be manipulated to use data from non-secure memory belonging to the Rich Execution Environment (REE). This occurs when the GPU firmware saves or retrieves internal data, using pointers from non-secure memory, between private memory and main memory. An attacker with control over the REE kernel could modify these pointer values, leading to corruption of the data used by the GPU firmware.
Users can update to the latest version of the Imagination Technologies GPU driver, which addresses this vulnerability by removing the shared secure memory allocations that allowed the exploitation to occur.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Aug 7, 2026CISA-ADP
Assessed Aug 7, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.imaginationtech.com/gpu-driver-vulnerabilities/ | imaginationtech | AdvisoryBundleRemedyVendor |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-822 | Untrusted Pointer Dereference | imaginationtech |
Affected Products
| Product | Versions |
|---|---|
| Imagination Technologies GPU DDK | <= 25.2 RTM <= 25.1 RTM2 <= 25.3 RTM <= 26.1 RTM1 |
CPE
Remediation
| |
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Aug 7, 2026 | CVE Modified | CISA-ADP |
| Aug 7, 2026 | New CVE Received | imaginationtech |
Volerion