Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-4368 | Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write data outside the Guest's virtualised GPU memory. |
| Link | Providers |
|---|---|
| https://www.imaginationtech.com/gpu-driver-vulnerabilities/ |
|
Mon, 24 Feb 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Sat, 22 Feb 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write data outside the Guest's virtualised GPU memory. | |
| Title | GPU DDK - RGXFWIF_HWPERF_CTL_BLK.uiNumCounters OOB write | |
| Weaknesses | CWE-823 | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: imaginationtech
Published:
Updated: 2025-02-24T12:28:55.898Z
Reserved: 2024-11-18T04:55:52.555Z
Link: CVE-2024-52939
Updated: 2025-02-24T12:28:49.988Z
Status : Deferred
Published: 2025-02-22T15:15:10.633
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-52939
No data.
OpenCVE Enrichment
No data.
EUVD