Security Advisory

CVE-2026-45203

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-10 20:57:19
Last updated 2026-07-13 18:55:12
Assigner imaginationtech
CVSS score not scored
State PUBLISHED

Description

Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a memory write outside the permitted range of memory for the host kernel. A TOCTOU bug existed where a malicious driver could modify values in memory after firmware validation but before use.