Vulnerabilities (CVE)

Filtered by vendor Imaginationtech Subscribe
Filtered by product Ddk
Total 24 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-13952 1 Imaginationtech 1 Ddk 2026-06-17 N/A 9.8 CRITICAL
A web page that contains unusual GPU shader code is loaded from the Internet into the GPU compiler process triggers a write use-after-free crash in the GPU shader compiler library. On certain platforms, when the compiler process has system privileges this could enable further exploits on the device. The shader code contained in the web page executes a path in the compiler that held onto an out of date pointer, pointing to a freed memory object.
CVE-2025-10865 1 Imaginationtech 1 Ddk 2026-06-17 N/A 7.8 HIGH
Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of reference counting to cause a potential use after free. Improper reference counting on an internal resource caused scenario where potential for use after free was present.
CVE-2025-0467 1 Imaginationtech 1 Ddk 2026-06-17 N/A 8.2 HIGH
Kernel software installed and running inside a Guest VM may exploit memory shared with the GPU Firmware to write data outside the Guest's virtualised GPU memory.
CVE-2023-4969 3 Amd, Imaginationtech, Khronos 261 Athlon 3000g, Athlon 3000g Firmware, Instinct Mi100 and 258 more 2026-06-17 N/A 6.5 MEDIUM
A GPU kernel can read sensitive data from another GPU kernel (even from another user or app) through an optimized GPU memory region called _local memory_ on various architectures.