Vulnerabilidades em Imagination Technologies

87 resultados
Análise Vexday

Com 68 CVEs catalogadas e nenhuma registrada no catálogo de exploração ativa da CISA (KEV), a Imagination Technologies apresenta taxa de exploração abaixo da média geral do catálogo, o que sugere risco operacional imediato relativamente contido. No entanto, 13 vulnerabilidades surgiram nos últimos 90 dias, indicando cadência recente de descobertas que merece acompanhamento. A falha mais comum é CWE-416 (Use-After-Free), categoria historicamente associada a primitivas de execução de código arbitrário, e a CVE mais relevante no momento é CVE-2024-47897, com escore EPSS de 0,0058 — baixo, porém não negligenciável dado o tipo de fraqueza predominante. Das 5 CVEs classificadas como críticas e sem nenhuma prova de conceito pública conhecida, a ausência de PoC reduz a superfície de exploração imediata, mas não elimina a necessidade de priorizar correção, especialmente em ambientes com exposição de drivers ou firmware baseados nessa tecnologia.

CVE-2025-0468HIGHGPU DDK - ui64RobustnessAddress can overwrite Freelist / HWRT (and bypass PMMETA)EPSS 0.2%CVE-2024-46973HIGHExploitable kernel use-after-free on psServerMMUContext due to reference count mismanagementEPSS 0.2%CVE-2024-52938HIGHGPU DDK - rgxfw_pm_add_freelist_for_reconstruction OOB writeEPSS 0.2%CVE-2024-47894HIGHGPU DDK - Out of bounds read into fwlog due to unchecked loop boundsEPSS 0.2%CVE-2025-46710MEDIUMPossible kernel exceptions caused by reading and writing kernel heap data after free.EPSS 0.2%CVE-2024-47895HIGHGPU DDK - OOB read into fwlog due to unchecked block countEPSS 0.2%CVE-2024-52937MEDIUMGPU DDK - rgxfw_kernel_CMD_DISABLE_ZSSTORE OOB write via ui32WriteOffsetOfDisableZSStoreEPSS 0.2%CVE-2025-58407HIGHGPU DDK - TOCTOU bug affecting psFWMemContext->uiPageCatBaseRegSetEPSS 0.2%CVE-2024-52936MEDIUMGPU DDK - rgxfw_hwperf_config OOB read & writeEPSS 0.2%CVE-2025-46708MEDIUMGPU DDK - Guest VM can delay the FW and GPU from processing workloads from other VMsEPSS 0.2%CVE-2026-7639HIGHGPU DDK - Page UAF read in PMMETA_PROTECT heap memoryEPSS 0.2%CVE-2024-52939HIGHGPU DDK - RGXFWIF_HWPERF_CTL_BLK.uiNumCounters OOB writeEPSS 0.2%CVE-2026-41154HIGHGPU DDK - Incorrect Index Calculation in CMA Cleanup Path of AllocOSPages_SparseEPSS 0.2%CVE-2025-0467HIGHGPU DDK - rgxfw_hwperf_get_packet_buffer OOB writeEPSS 0.2%CVE-2024-43704HIGHGPU DDK - PowerVR: PVRSRVAcquireProcessHandleBase can cause psProcessHandleBase reuse when PIDs are reusedEPSS 0.2%CVE-2024-12577HIGHGPU DDK - rgxfw_pcset_ungrab OOB write via psFWMemContext->uiPageCatBaseRegSetEPSS 0.2%CVE-2025-58411HIGHGPU DDK - Reservation::psMappedPMR can change while used by a freelist -> UAFEPSS 0.2%CVE-2024-46972HIGHGPU DDK - Security: Reference count overflow in pvr_sync_rollback_export_fenceEPSS 0.2%CVE-2024-47891HIGHGPU DDK - Exploitable double free on PTL_STREAM_DESC object in the kernel function TLServerCloseStreamKM due to a race conditionEPSS 0.2%CVE-2026-34196HIGHGPU DDK - UAF read and/or write of arbitrary physical memory due to integer truncation in PMRDevPhysAddrOSMemEPSS 0.2%