Vulnerabilidades em Imagination Technologies

82 resultados
Análise Vexday

Com 68 CVEs catalogadas e nenhuma registrada no catálogo de exploração ativa da CISA (KEV), a Imagination Technologies apresenta taxa de exploração abaixo da média geral do catálogo, o que sugere risco operacional imediato relativamente contido. No entanto, 13 vulnerabilidades surgiram nos últimos 90 dias, indicando cadência recente de descobertas que merece acompanhamento. A falha mais comum é CWE-416 (Use-After-Free), categoria historicamente associada a primitivas de execução de código arbitrário, e a CVE mais relevante no momento é CVE-2024-47897, com escore EPSS de 0,0058 — baixo, porém não negligenciável dado o tipo de fraqueza predominante. Das 5 CVEs classificadas como críticas e sem nenhuma prova de conceito pública conhecida, a ausência de PoC reduz a superfície de exploração imediata, mas não elimina a necessidade de priorizar correção, especialmente em ambientes com exposição de drivers ou firmware baseados nessa tecnologia.

CVE-2024-46973HIGHExploitable kernel use-after-free on psServerMMUContext due to reference count mismanagementEPSS 0.2%CVE-2024-52938HIGHGPU DDK - rgxfw_pm_add_freelist_for_reconstruction OOB writeEPSS 0.2%CVE-2024-47894HIGHGPU DDK - Out of bounds read into fwlog due to unchecked loop boundsEPSS 0.2%CVE-2024-47895HIGHGPU DDK - OOB read into fwlog due to unchecked block countEPSS 0.2%CVE-2025-0468HIGHGPU DDK - ui64RobustnessAddress can overwrite Freelist / HWRT (and bypass PMMETA)EPSS 0.2%CVE-2024-52937MEDIUMGPU DDK - rgxfw_kernel_CMD_DISABLE_ZSSTORE OOB write via ui32WriteOffsetOfDisableZSStoreEPSS 0.2%CVE-2024-52936MEDIUMGPU DDK - rgxfw_hwperf_config OOB read & writeEPSS 0.2%CVE-2025-58407HIGHGPU DDK - TOCTOU bug affecting psFWMemContext->uiPageCatBaseRegSetEPSS 0.2%CVE-2025-46710MEDIUMPossible kernel exceptions caused by reading and writing kernel heap data after free.EPSS 0.2%CVE-2024-52939HIGHGPU DDK - RGXFWIF_HWPERF_CTL_BLK.uiNumCounters OOB writeEPSS 0.2%CVE-2024-43704HIGHGPU DDK - PowerVR: PVRSRVAcquireProcessHandleBase can cause psProcessHandleBase reuse when PIDs are reusedEPSS 0.2%CVE-2025-0467HIGHGPU DDK - rgxfw_hwperf_get_packet_buffer OOB writeEPSS 0.2%CVE-2024-12577HIGHGPU DDK - rgxfw_pcset_ungrab OOB write via psFWMemContext->uiPageCatBaseRegSetEPSS 0.2%CVE-2024-46972HIGHGPU DDK - Security: Reference count overflow in pvr_sync_rollback_export_fenceEPSS 0.2%CVE-2025-46708MEDIUMGPU DDK - Guest VM can delay the FW and GPU from processing workloads from other VMsEPSS 0.2%CVE-2024-47891HIGHGPU DDK - Exploitable double free on PTL_STREAM_DESC object in the kernel function TLServerCloseStreamKM due to a race conditionEPSS 0.2%CVE-2024-12837HIGHGPU DDK - Exploitable kernel double free on apsFenceSyncCheckpoints allocated with arbitrary sizeEPSS 0.2%CVE-2024-47900HIGHGPU DDK - Multiple integer overflow in DmaTransfer PMR_DevPhysAddr functions leading to OOB writesEPSS 0.2%CVE-2024-47898HIGHGPU DDK - PVRSRVDeviceSyncOpen use-after-free conditionEPSS 0.2%CVE-2024-47899HIGHGPU DDK - PVRSRVDeviceServicesOpen use-after-free conditionEPSS 0.2%