Today > 5 Critical | 36 High | 55 Medium | 1 Low vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-52936

Jan. 13, 2025, 11:15 a.m.

Description

Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to write data outside the Guest's virtualised GPU memory.

Weaknesses

CWE-823
Use of Out-of-range Pointer Offset

The product performs pointer arithmetic on a valid pointer, but it uses an offset that can point outside of the intended range of valid memory locations for the resulting pointer.

CWE ID: 823

Date

Published: Jan. 13, 2025, 11:15 a.m.

Last Modified: Jan. 13, 2025, 11:15 a.m.

Status : Awaiting Analysis

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

367425dc-4d06-4041-9650-c2dc6aaa27ce

References

https://www.imaginationtech.com/ 367425dc-4d06-4041-9650-c2dc6aaa27ce