Graphics Ddk
87 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Graphics Ddk, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.
Graphics Ddk CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 1 |
| 2024-11 | 3 |
| 2024-12 | 5 |
| 2025-01 | 12 |
| 2025-02 | 4 |
| 2025-03 | 4 |
| 2025-04 | 3 |
| 2025-05 | 2 |
| 2025-06 | 4 |
| 2025-07 | 1 |
| 2025-08 | 3 |
| 2025-09 | 2 |
| 2025-10 | 0 |
| 2025-11 | 2 |
| 2025-12 | 1 |
| 2026-01 | 5 |
| 2026-02 | 0 |
| 2026-03 | 3 |
| 2026-04 | 1 |
| 2026-05 | 3 |
| 2026-06 | 11 |
| 2026-07 | 9 |
| 2026-08 | 6 |
| 2026-09 | 2 |
Severity
How the 87 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical6
- High62
- Medium16
- Low3
Latest CVEs
The 15 most recently published vulnerabilities affecting Graphics Ddk.
- CVE-2026-45197GPU DDK - TOCTOU affecting psFWMemContext->uiPageCatBaseRegSet2.5
- CVE-2026-45200GPU DDK - Double free in _FreeOSPages due to incorrect allocation flag set by _EncodeAllocationFlags7.8
- CVE-2026-45202GPU DDK - Silent High-Order CMA Memory Leak & Double Free in `_FreeOSPages_Fast`5.5
- CVE-2026-45201GPU DDK - Incorrect page size validation in PhysmemNewRamBackedPMR could lead to OOB read and/or write of arbitrary physical memory7.8
- CVE-2026-45199GPU DDK - rgxfw_to_ptr() does not reject FW private data pointers7.8
- CVE-2026-49746GPU DDK - Dimension Mismatch and Integer Truncation in PMRDevPhysAddrOSMem7.1
- CVE-2026-45204GPU DDK - Out of bounds memory access and kernel NULL pointer dereference in DmaTransfer when pui64Address is a pointer to device memory5.5
- CVE-2026-45198GPU DDK - RGXFWIF_SYSINIT::sCorememDataStore is untrusted7.8
- CVE-2026-16280GPU DDK - Integer overflow in _PMRLogicalOffsetToPhysicalOffset9.8
- CVE-2026-49745GPU DDK - Unvalidated sHWPerfCtlDMABuf GPU-VA, DMA-write into FW privdata via MMU ctx 07.8
- CVE-2026-49744GPU DDK - Unchecked ui32TracePointer in rgxfw_log_ex()7.8
- CVE-2026-49743GPU DDK - Write UAF of sync checkpoint in GPU kick function after export fence file descriptor is prematurely closed7.8
- CVE-2026-45203GPU DDK - rgxfw_hwperf_ufo() re-reads psCmdHeader->ui32CmdSize after initial check, TOCTOU7.8
- CVE-2026-45196GPU DDK - Arbitrary GPU register write in rgxfw_hwperf_hw due to unsanitized pointers from host kernel7.8
- CVE-2026-7639GPU DDK - Page UAF read in PMMETA_PROTECT heap memory7.8
Product grouping is registry-driven, with AI assist and human review. How it works