Kernel software installed and running inside a Guest/Host VM may post improper commands to the GPU Firmware to trigger a write of data outside the intended GPU memory.
A logic error in the address translation allowed a compromised Host (Kernel) to perform arbitrary writes to firmware memory.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.imaginationtech.com/gpu-driver-vulnerabilities/ |
|
History
Mon, 01 Jun 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Kernel software installed and running inside a Guest/Host VM may post improper commands to the GPU Firmware to trigger a write of data outside the intended GPU memory. A logic error in the address translation allowed a compromised Host (Kernel) to perform arbitrary writes to firmware memory. | |
| Title | GPU DDK - Arbitrary write via UFO updates due insufficient pointer validation in rgxfw_to_ptr() | |
| Weaknesses | CWE-823 | |
| References |
|
Status: PUBLISHED
Assigner: imaginationtech
Published:
Updated: 2026-06-01T14:29:23.685Z
Reserved: 2026-03-26T13:47:30.669Z
Link: CVE-2026-34193
No data.
Status : Received
Published: 2026-06-01T13:16:31.460
Modified: 2026-06-01T13:16:31.460
Link: CVE-2026-34193
No data.
OpenCVE Enrichment
No data.