High severity7.4NVD Advisory· Published Nov 17, 2025· Updated Jun 17, 2026
CVE-2025-58407
CVE-2025-58407
Description
Kernel or driver software installed on a Guest VM may post improper commands to the GPU Firmware to exploit a TOCTOU race condition and trigger a read and/or write of data outside the allotted memory escaping the virtual machine.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: 25.2 RTM1
- cpe:2.3:a:imaginationtech:ddk:25.2:rtm:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- www.imaginationtech.com/gpu-driver-vulnerabilities/nvdVendor Advisory
News mentions
0No linked articles in our index yet.