CVE-2025-0468

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Apr 4, 2025
Updated: Apr 7, 2025
CWE ID 280

Summary

CVE-2025-0468 is a vulnerability affecting certain software applications that, when run as a non-privileged user, can manipulate GPU system calls to write to arbitrary physical memory pages. Under specific conditions, this issue could enable an attacker to corrupt data pages not allocated by the GPU driver but in use by the kernel and other drivers, potentially altering their behavior. This vulnerability poses a significant risk to system security and stability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share