Security Advisory

CVE-2026-0125

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-16 18:50:59
Last updated 2026-06-17 03:56:24
Assigner Google_Devices
CVSS score not scored
State PUBLISHED

Description

In multiple functions of vpu_ioctl.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.