This is caused by improper handling of the memory protections for the buffer resource.
Project Subscriptions
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.imaginationtech.com/gpu-driver-vulnerabilities/ |
|
Mon, 12 Jan 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Imaginationtech ddk
|
|
| CPEs | cpe:2.3:a:imaginationtech:ddk:23.3:rtm:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:24.1:-:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:24.2:-:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:24.2:rtm1:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:24.2:rtm2:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:24.3:-:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:25.1:-:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:25.2:-:*:*:*:*:*:* cpe:2.3:a:imaginationtech:ddk:25.2:rtm:*:*:*:*:*:* |
|
| Vendors & Products |
Imaginationtech ddk
|
Tue, 18 Nov 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Imaginationtech
Imaginationtech graphics Ddk |
|
| Vendors & Products |
Imaginationtech
Imaginationtech graphics Ddk |
Mon, 17 Nov 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 17 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Software installed and run as a non-privileged user may conduct improper GPU system calls to gain write permissions to memory buffers exported as read-only. This is caused by improper handling of the memory protections for the buffer resource. | |
| Title | GPU DDK - Multiple calls into PhysmemGEMPrimeExport can inherit write access permission for an existing read-only dma_buf import PMR | |
| Weaknesses | CWE-280 | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: imaginationtech
Published:
Updated: 2025-11-17T20:55:22.714Z
Reserved: 2025-09-01T08:00:07.349Z
Link: CVE-2025-58410
Updated: 2025-11-17T20:55:18.546Z
Status : Analyzed
Published: 2025-11-17T17:15:48.880
Modified: 2026-01-12T15:14:01.303
Link: CVE-2025-58410
No data.
OpenCVE Enrichment
Updated: 2025-11-18T09:06:22Z