Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of resources reference counting creating a potential use after free scenario. Improper resource management and reference counting on an internal resource caused scenario where potential write use after free was present.
History

Wed, 14 Jan 2026 15:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 14 Jan 2026 11:15:00 +0000

Type Values Removed Values Added
First Time appeared Imaginationtech
Imaginationtech graphics Ddk
Vendors & Products Imaginationtech
Imaginationtech graphics Ddk

Tue, 13 Jan 2026 17:00:00 +0000

Type Values Removed Values Added
Description Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of resources reference counting creating a potential use after free scenario. Improper resource management and reference counting on an internal resource caused scenario where potential write use after free was present.
Title GPU DDK - Reservation::psMappedPMR can change while used by a freelist -> UAF
Weaknesses CWE-416
References

cve-icon MITRE

Status: PUBLISHED

Assigner: imaginationtech

Published: 2026-01-13T16:41:51.276Z

Updated: 2026-01-14T14:41:14.848Z

Reserved: 2025-09-01T08:00:07.349Z

Link: CVE-2025-58411

cve-icon Vulnrichment

Updated: 2026-01-14T14:40:53.882Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-01-13T17:15:57.813

Modified: 2026-01-14T16:25:40.430

Link: CVE-2025-58411

cve-icon Redhat

No data.