What is CVE-2026-45198?
This vulnerability (CVE-2026-45198) arises when kernel software from a non-secure OS on platforms with Trusted Execution Environment support forces the GPU Firmware to boot using data from non-secure memory. An attacker could potentially exploit this to escalate privileges or compromise system integrity. Affected systems should apply GPU Firmware updates or enable secure configurations to mitigate the risk.
Azərbaycanca: Bu zəiflik (CVE-2026-45198), Təhlükəsiz İcra Mühiti (Trusted Execution Environment) dəstəyi olan platformalarda, qeyri-təhlükəsiz əməliyyat sistemindən gələn kernel proqram təminatının GPU Firmware-inin qeyri-təhlükəsiz yaddaşdan (non-secure memory) məlumat istifadə edərək yüklənməsinə səbəb olması ilə bağlıdır. Bu, təcavüzkarın imtiyazları yüksəltməsinə və ya sistemə müdaxilə etməsinə yol aça bilər. Təsirə məruz qalan cihazlarda GPU Firmware-ni yeniləmək və ya təhlükəsiz konfiqurasiyaları aktivləşdirmək tövsiyə olunur.
FAQ2
What type of platforms are affected by CVE-2026-45198?
This vulnerability occurs on platforms that support a Trusted Execution Environment.
What can an attacker gain by successfully exploiting this vulnerability?
An attacker could potentially escalate privileges or compromise system integrity.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.