Unrated severityNVD Advisory· Published Nov 17, 2025· Updated Nov 17, 2025
GPU DDK - TOCTOU bug affecting psFWMemContext->uiPageCatBaseRegSet
CVE-2025-58407
Description
Kernel or driver software installed on a Guest VM may post improper commands to the GPU Firmware to exploit a TOCTOU race condition and trigger a read and/or write of data outside the allotted memory escaping the virtual machine.
Affected products
1- Range: 25.2 RTM1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.