This is caused by improper handling of the memory protections for the buffer resource.
No analysis available yet.
No remediation available yet.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.imaginationtech.com/gpu-driver-vulnerabilities/ |
|
Mon, 12 Jan 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Imaginationtech ddk
|
|
| CPEs | cpe:2.3:a:imaginationtech:ddk:23.3:rtm:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:24.1:-:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:24.2:-:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:24.2:rtm1:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:24.2:rtm2:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:24.3:-:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:25.1:-:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:25.2:-:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:25.2:rtm:*:*:*:*:*:* |
|
| Vendors & Products |
Imaginationtech ddk
|
Tue, 18 Nov 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Imaginationtech
Imaginationtech graphics Ddk |
|
| Vendors & Products |
Imaginationtech
Imaginationtech graphics Ddk |
Mon, 17 Nov 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 17 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Software installed and run as a non-privileged user may conduct improper GPU system calls to gain write permissions to memory buffers exported as read-only. This is caused by improper handling of the memory protections for the buffer resource. | |
| Title | GPU DDK - Multiple calls into PhysmemGEMPrimeExport can inherit write access permission for an existing read-only dma_buf import PMR | |
| Weaknesses | CWE-280 | |
| References |
|
Status: PUBLISHED
Assigner: imaginationtech
Published:
Updated: 2025-11-17T20:55:22.714Z
Reserved: 2025-09-01T08:00:07.349Z
Link: CVE-2025-58410
Updated: 2025-11-17T20:55:18.546Z
Status : Analyzed
Published: 2025-11-17T17:15:48.880
Modified: 2026-01-12T15:14:01.303
Link: CVE-2025-58410
No data.
OpenCVE Enrichment
Updated: 2025-11-18T09:06:22Z