CVE-2026-45204: Imagination Technologies Graphics Ddk

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger OOB access and kernel null pointer dereference in an error path. Null pointer dereference occurs in an error path of a function running in kernel thread of execution leading to kernel exceptions, platform instability and denial of service.

Affected products

  • Imagination Technologies Graphics Ddk: version 1.18 RTM2 only; version 23.2 RTM2 only; version 24.2 RTM2 only; from 25.1 RTM2, up to and including 25.3 RTM; version 26.1 RTM1 only

Published 2026-08-07. Last modified 2026-09-03.