Back to overview

CVE-2026-34194

HIGH
7.1
CVSS 3.1
Description
Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of a mapping state maintained for a sparse memory allocation. The product accidentally refers to the wrong memory due to the semantics of how math operations are implicitly scaled across buffers of different sizes.

Metadata

CVE ID
CVE-2026-34194
State
PUBLISHED
Assigner
imaginationtech
Reserved
2026-03-26 13:47 UTC
Published
2026-06-08 14:58 UTC
Last updated
2026-06-08 18:55 UTC
Primary CWE
CWE-468
CWE-468: Incorrect Pointer Scaling
Vendor / Product
Imagination Technologies / Graphics DDK
Sources
cve.org  ·  NVD

Severity & Metrics

7.1 HIGH CVSS 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
SSVC — CISA Coordinator
Exploitation
none
Automatable
no
Tech. Impact
total
Affected products (1)
VendorProductPlatformVersions
Imagination Technologies Graphics DDK Linux,Android 1.18 RTM, 23.2 RTM, 24.2 RTM, 25.1 RTM ≤ 25.3 RTM …
Weakness (CWE)
CWESourceDescription
CWE-468 cna CWE-468: Incorrect Pointer Scaling
CVSS scores (1)
ScoreSeverityVersionSourceVector
7.1 HIGH 3.1 adp CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Back to overview