🟠 CVE-2026-45195

CVSS 评分: 7.8(高危) | 状态: Awaiting Analysis | 发布时间: 2026-06-26


漏洞描述

Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a memory read or write outside the permitted range of memory for the host kernel.

Addresses passed to the GPU Firmware can be used by the Firmware for more privileged memory accesses than are permitted by the system.


漏洞详情

字段
CVE ID CVE-2026-45195
CVSS 评分 7.8(高危)
CVSS 向量 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE CWE-280
发布时间 2026-06-26
最后更新 2026-06-26
状态 Awaiting Analysis
数据来源 367425dc-4d06-4041-9650-c2dc6aaa27ce

参考链接


🤖 本文由 CVE 安全快讯机器人自动生成
数据来源: NVD (National Vulnerability Database) | 获取时间: 2026-06-27 06:07