Software installed and run as a non-privileged user may conduct improper GPU system calls to gain write permissions to memory buffers exported as read-only.
This is caused by improper handling of the memory protections for the buffer resource.
This is caused by improper handling of the memory protections for the buffer resource.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.imaginationtech.com/gpu-driver-vulnerabilities/ |
|
History
Mon, 17 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Software installed and run as a non-privileged user may conduct improper GPU system calls to gain write permissions to memory buffers exported as read-only. This is caused by improper handling of the memory protections for the buffer resource. | |
| Title | GPU DDK - Multiple calls into PhysmemGEMPrimeExport can inherit write access permission for an existing read-only dma_buf import PMR | |
| Weaknesses | CWE-280 | |
| References |
|
Status: PUBLISHED
Assigner: imaginationtech
Published:
Updated: 2025-11-17T20:55:22.714Z
Reserved: 2025-09-01T08:00:07.349Z
Link: CVE-2025-58410
No data.
Status : Received
Published: 2025-11-17T17:15:48.880
Modified: 2025-11-17T17:15:48.880
Link: CVE-2025-58410
No data.
OpenCVE Enrichment
No data.