CVE-2025-0468
CVSS 3.1 Score 7.1 of 10 (high)
Details
Published Apr 4, 2025
Updated: Apr 7, 2025
CWE ID 280
Summary
CVE-2025-0468 is a vulnerability affecting certain software applications that, when run as a non-privileged user, can manipulate GPU system calls to write to arbitrary physical memory pages. Under specific conditions, this issue could enable an attacker to corrupt data pages not allocated by the GPU driver but in use by the kernel and other drivers, potentially altering their behavior. This vulnerability poses a significant risk to system security and stability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Graphics DDK