CVE-2026-49746: Imagination Technologies Graphics Ddk
High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.
Software installed and run as a non-privileged user may conduct improper GPU system calls to cause OOB read kernel memory access and in certain cases cause GPU UAF of arbitrary pages. Incorrect validation of array index can lead to OOB read and potentially to GPU UAF of arbitrary pages.
Affected products
- Imagination Technologies Graphics Ddk: version 1.18 RTM2 only; version 23.2 RTM2 only; version 24.2 RTM2 only; from 25.1 RTM2, up to and including 25.3 RTM; version 26.1 RTM1 only
Published 2026-08-07. Last modified 2026-09-03.