Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.imaginationtech.com/gpu-driver-vulnerabilities/ |
|
Thu, 08 Jan 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Imaginationtech ddk
|
|
| CPEs | cpe:2.3:a:imaginationtech:ddk:25.2:rtm:*:*:*:*:*:* | |
| Vendors & Products |
Imaginationtech ddk
|
Tue, 18 Nov 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Imaginationtech
Imaginationtech graphics Ddk |
|
| Vendors & Products |
Imaginationtech
Imaginationtech graphics Ddk |
Mon, 17 Nov 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 17 Nov 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Kernel or driver software installed on a Guest VM may post improper commands to the GPU Firmware to exploit a TOCTOU race condition and trigger a read and/or write of data outside the allotted memory escaping the virtual machine. | |
| Title | GPU DDK - TOCTOU bug affecting psFWMemContext->uiPageCatBaseRegSet | |
| Weaknesses | CWE-367 | |
| References |
|
Status: PUBLISHED
Assigner: imaginationtech
Published:
Updated: 2025-11-17T17:35:06.099Z
Reserved: 2025-09-01T08:00:07.348Z
Link: CVE-2025-58407
Updated: 2025-11-17T17:35:02.390Z
Status : Analyzed
Published: 2025-11-17T18:15:57.880
Modified: 2026-01-08T17:13:38.533
Link: CVE-2025-58407
No data.
OpenCVE Enrichment
Updated: 2025-11-18T09:06:15Z