# CVE-2026-45202

## Summary

- **CVE ID:** CVE-2026-45202
- **Severity:** MEDIUM
- **CVSS Score:** 5.5 (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
- **CWE:** CWE-415
- **Published:** Aug 21, 2026
- **Last Modified:** Aug 27, 2026

## Description

Software installed and run as a non-privileged user may conduct GPU system calls which cause GPU memory leaks and possible kernel heap corruption.



Scenario caused by memory free paths not maintaining state data of upgraded higher order allocations. This could cause memory leak or double free event.

## Affected Products

- Imagination Technologies — Graphics DDK (1.18 RTM2)
- Imagination Technologies — Graphics DDK (23.2 RTM2)
- Imagination Technologies — Graphics DDK (24.2 RTM2)
- Imagination Technologies — Graphics DDK (25.1 RTM2)
- Imagination Technologies — Graphics DDK (26.1 RTM1)
- Imagination Technologies — Graphics DDK (26.1 RTM2)

## References

- [CNA](https://www.imaginationtech.com/gpu-driver-vulnerabilities/)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.10%
- **EPSS Percentile:** 1.2

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._