Vulnerabilidades em Imagination Technologies

87 resultados
Análise Vexday

Com 68 CVEs catalogadas e nenhuma registrada no catálogo de exploração ativa da CISA (KEV), a Imagination Technologies apresenta taxa de exploração abaixo da média geral do catálogo, o que sugere risco operacional imediato relativamente contido. No entanto, 13 vulnerabilidades surgiram nos últimos 90 dias, indicando cadência recente de descobertas que merece acompanhamento. A falha mais comum é CWE-416 (Use-After-Free), categoria historicamente associada a primitivas de execução de código arbitrário, e a CVE mais relevante no momento é CVE-2024-47897, com escore EPSS de 0,0058 — baixo, porém não negligenciável dado o tipo de fraqueza predominante. Das 5 CVEs classificadas como críticas e sem nenhuma prova de conceito pública conhecida, a ausência de PoC reduz a superfície de exploração imediata, mas não elimina a necessidade de priorizar correção, especialmente em ambientes com exposição de drivers ou firmware baseados nessa tecnologia.

CVE-2024-47892HIGHGPU DDK - UAF of kernel memory in PMRUnlockPhysAddressesOSMem for on-demand non-4KB PMRs in system memory (UMA)EPSS 0.1%CVE-2024-46971HIGHGPU DDK - UAF of memory in PMRUnlockSysPhysAddressesLocalMem for on-demand PMRs on PCI (LMA) systemsEPSS 0.1%CVE-2025-25179HIGHGPU DDK - Freelist GPU VA can be remapped to another reservation/PMR to trigger GPU arbitrary write to physical memoryEPSS 0.1%CVE-2025-25180HIGHGPU DDK - Insufficient validation in RGXCREATEFREELIST creates corrupt freelistEPSS 0.1%CVE-2025-46707MEDIUMGPU DDK - Guest VM can override its own FW VZ connection state after the FW has close itEPSS 0.1%CVE-2024-43701HIGHGPU DDK - PowerVR: TLB invalidate UAF of dma_buf imported into multiple GPU devicesEPSS 0.1%CVE-2025-58408MEDIUMGPU DDK - KASAN Read UAF in the PVRSRVBridgeRGXSubmitTransfer2 due to improper error handling codeEPSS 0.1%CVE-2025-10865HIGHGPU DDK - DevmemIntGetReservationData does not ref the PMR it returnsEPSS 0.1%CVE-2026-45203HIGHGPU DDK - rgxfw_hwperf_ufo() re-reads psCmdHeader->ui32CmdSize after initial check, TOCTOUEPSS 0.1%CVE-2025-46711MEDIUMGPU DDK - NULL Pointer dereference occurs in LockHandle on bridge entry when connection misusedEPSS 0.1%CVE-2026-21736MEDIUMGPU DDK - Insufficient permission check in PhysmemWrapExtMem() when write attribute support enabledEPSS 0.1%CVE-2026-45198HIGHGPU DDK - RGXFWIF_SYSINIT::sCorememDataStore is untrustedEPSS 0.1%CVE-2026-41158HIGHGPU DDK - Backed sparse PMRs are not handled by deferred free mechanism after shrinkEPSS 0.1%CVE-2026-45201HIGHGPU DDK - Incorrect page size validation in PhysmemNewRamBackedPMR could lead to OOB read and/or write of arbitrary physical memoryEPSS 0.1%CVE-2026-45199HIGHGPU DDK - rgxfw_to_ptr() does not reject FW private data pointersEPSS 0.1%CVE-2026-34194HIGHGPU DDK - UAF read and/or write to arbitrary physical pages in DevmemIntChangeSparse due to incorrect calculation of the virtual index countEPSS 0.1%CVE-2026-49745HIGHGPU DDK - Unvalidated sHWPerfCtlDMABuf GPU-VA, DMA-write into FW privdata via MMU ctx 0EPSS 0.1%CVE-2026-49744HIGHGPU DDK - Unchecked ui32TracePointer in rgxfw_log_ex()EPSS 0.1%CVE-2026-49743HIGHGPU DDK - Write UAF of sync checkpoint in GPU kick function after export fence file descriptor is prematurely closedEPSS 0.1%CVE-2026-45200HIGHGPU DDK - Double free in _FreeOSPages due to incorrect allocation flag set by _EncodeAllocationFlagsEPSS 0.1%