Impact
An integer overflow occurs in the _PMRLogicalOffsetToPhysicalOffset function when computing physical offsets for sparse or large PMRs exceeding 4 GB, leading to incorrect GPU MMU mappings. A non‑privileged user can exploit this flaw to access unintended physical memory, potentially causing memory corruption or information disclosure. The weakness is an integer overflow (CWE‑190).
Affected Systems
Imagination Technologies Graphics Driver Development Kit; the vulnerability affects any system that uses the DDK for sparse or large PMRs larger than 4 GB. Exact version ranges are not specified, but any build handling PMRs beyond 4 GB is impacted.
Risk and Exploitability
The EPSS score is below 1 % and the vulnerability is not listed in CISA KEV, indicating a low probability of widespread exploitation as of now. However, the CVE description indicates that a non‑privileged user can trigger access to unintended physical memory, implying a local attack. Based on the description, it is inferred that exploitation would require local GPU access and would function as a local privilege escalation toward memory corruption or information disclosure. No remote exploitation steps are documented. The CVSS score is 9.8, indicating critical severity.
OpenCVE Enrichment