---
id: CVE-2026-45196
title: >-
  Kernel software installed and running inside a Host VM may post improper
  commands to the GPU Firmware to trigger a GPU register access which can lead
  to privilege escalation.
summary: >-
  Kernel software installed and running inside a Host VM may post improper
  commands to the GPU Firmware to trigger a GPU register access which can lead
  to privilege escalation.
severity: none
cwe:
  - CWE-280
published: '2026-07-10'
updated: '2026-07-10'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-45196'
references:
  - url: 'https://www.imaginationtech.com/gpu-driver-vulnerabilities/'
    label: 367425dc-4d06-4041-9650-c2dc6aaa27ce
tags:
  - nvd
epss: 0.00144
epssPercentile: 0.04092
ingestedAt: '2026-07-11T20:15:26.858Z'
---

## Overview

Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a GPU register access which can lead to privilege escalation.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
