SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-45200

HIGH · CVSS 7.8 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-09-04 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A vulnerability exists in software running as a non-privileged user that improperly handles GPU driver IOCTL calls, leading to a double free scenario and potential kernel heap corruption. This flaw could allow an attacker to exploit the memory management system, potentially resulting in system crashes or arbitrary code execution. Organizations utilizing software that interacts with GPU drivers should prioritize addressing this vulnerability to mitigate risks associated with system stability and security.

CVE
CVE-2026-45200
Severity
HIGH
CVSS
7.8
EPSS
0.11%

Original NVD Description

Software installed and run as a non-privileged user may conduct improper GPU driver IOCTL calls to create an allocation scenario that when freed would cause double free and kernel heap corruption. Scenario caused by fabricating a specific combination of flags on the allocation interface that would cause an incorrect double free event when freed.