Kernel software installed and running inside a Guest/Host VM may post improper commands to the GPU Firmware to trigger a write of data outside the intended GPU memory.
A logic error in the address translation allowed a compromised Host (Kernel) to perform arbitrary writes to firmware memory.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.imaginationtech.com/gpu-driver-vulnerabilities/ |
|
History
Wed, 12 Aug 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google android Imaginationtech ddk Linux Linux linux Kernel |
|
| CPEs | cpe:2.3:a:imaginationtech:ddk:*:*:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:26.1:rtm1:*:*:*:*:*:* cpe:2.3:o:google:android:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Google
Google android Imaginationtech ddk Linux Linux linux Kernel |
Wed, 03 Jun 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Imaginationtech
Imaginationtech graphics Ddk |
|
| Vendors & Products |
Imaginationtech
Imaginationtech graphics Ddk |
Mon, 01 Jun 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 01 Jun 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Kernel software installed and running inside a Guest/Host VM may post improper commands to the GPU Firmware to trigger a write of data outside the intended GPU memory. A logic error in the address translation allowed a compromised Host (Kernel) to perform arbitrary writes to firmware memory. | |
| Title | GPU DDK - Arbitrary write via UFO updates due insufficient pointer validation in rgxfw_to_ptr() | |
| Weaknesses | CWE-823 | |
| References |
|
Status: PUBLISHED
Assigner: imaginationtech
Published:
Updated: 2026-06-01T14:29:23.685Z
Reserved: 2026-03-26T13:47:30.669Z
Link: CVE-2026-34193
Updated: 2026-06-01T14:28:29.805Z
Status : Analyzed
Published: 2026-06-01T13:16:31.460
Modified: 2026-08-12T18:04:41.840
Link: CVE-2026-34193
No data.
OpenCVE Enrichment
Updated: 2026-06-02T20:15:16Z