CVE-2026-45202
Last modified
CVE-2026-45202 is a medium-severity vulnerability rated 5.5/10 on the CVSS scale. Software installed and run as a non-privileged user may conduct GPU system calls which cause GPU memory leaks and possible kernel heap corruption. Scenario caused by memory free paths not maintaining state data of upgraded higher order allocations. This could cause memory leak or double free event.. EPSS estimates a 0.10% chance of exploitation in the next 30 days.
Description
Software installed and run as a non-privileged user may conduct GPU system calls which cause GPU memory leaks and possible kernel heap corruption. Scenario caused by memory free paths not maintaining state data of upgraded higher order allocations. This could cause memory leak or double free event.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Imagination Technologies | Graphics DDK | 1.18 RTM2; 23.2 RTM2; 24.2 RTM2; >= 25.1 RTM2, <= 25.3 RTM; 26.1 RTM1 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-45202?
How severe is CVE-2026-45202?
How do I fix CVE-2026-45202?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-45196Kernel software installed and running inside a Host VM may p…7.8
- CVE-2026-45197Kernel software installed and running inside a Guest VM may …2.5
- CVE-2026-45198Kernel software from a non-secure operating system on a plat…7.8
- CVE-2026-45199Kernel software installed and running inside a Guest VM may …7.8
- CVE-2026-45200Software installed and run as a non-privileged user may cond…7.8
- CVE-2026-45201Software installed and run as a non-privileged user may cond…7.8
- CVE-2026-45203Kernel software installed and running inside a Host VM may p…7.8
- CVE-2026-45204Software installed and run as a non-privileged user may cond…5.5
- CVE-2026-45205Uncontrolled Recursion vulnerability in Apache Commons. Whe…5.3
- CVE-2026-45206An origin validation vulnerability in the Apex One/SEP agent…7.8
- CVE-2026-45207An origin validation vulnerability in the Apex One/SEP agent…7.8
- CVE-2026-45208A time-of-check time-of-use vulnerability in the Apex One/SE…7.8
Are you affected by CVE-2026-45202?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
