CVE-2026-45202: Imagination Technologies Graphics Ddk

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

Software installed and run as a non-privileged user may conduct GPU system calls which cause GPU memory leaks and possible kernel heap corruption. Scenario caused by memory free paths not maintaining state data of upgraded higher order allocations. This could cause memory leak or double free event.

Affected products

  • Imagination Technologies Graphics Ddk: version 1.18 RTM2 only; version 23.2 RTM2 only; version 24.2 RTM2 only; from 25.1 RTM2, up to and including 25.3 RTM; version 26.1 RTM1 only

Published 2026-08-21. Last modified 2026-09-03.