HomeDefault status
unknown
1.18 RTM (custom)
affected
23.2 RTM (custom)
affected
24.2 RTM (custom)
affected
25.1 RTM (custom)
affected
26.1 RTM1 (custom)
affected
26.1 RTM2 (custom)
unaffected
Description
Kernel software installed and running inside a Guest/Host VM may post improper commands to the GPU Firmware to trigger a write of data outside the intended GPU memory. A logic error in the address translation allowed a compromised Host (Kernel) to perform arbitrary writes to firmware memory.
Problem types
CWE - CWE-823: Use of Out-of-range Pointer Offset (4.16)
Product status
1.18 RTM (custom)
23.2 RTM (custom)
24.2 RTM (custom)
25.1 RTM (custom)
26.1 RTM1 (custom)
26.1 RTM2 (custom)
References
www.imaginationtech.com/gpu-driver-vulnerabilities/