Vulnerability Description
Software installed and run as a non-privileged user may conduct improper GPU system calls to gain write permission to read-only wrapped user-mode memory. This is caused by improper handling of the memory protections for the user-mode wrapped memory resource.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Imaginationtech | Ddk | 25.1 |
Related Weaknesses (CWE)
References
- https://www.imaginationtech.com/gpu-driver-vulnerabilities/Vendor Advisory
FAQ
What is CVE-2026-21736?
CVE-2026-21736 is a vulnerability with a CVSS score of 4.4 (MEDIUM). Software installed and run as a non-privileged user may conduct improper GPU system calls to gain write permission to read-only wrapped user-mode memory. This is caused by improper handling of the me...
How severe is CVE-2026-21736?
CVE-2026-21736 has been rated MEDIUM with a CVSS base score of 4.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-21736?
Check the references section above for vendor advisories and patch information. Affected products include: Imaginationtech Ddk.