Security Advisory

CVE-2026-16280

9.8
CRITICAL

Vulnerability Description

An integer overflow when calculating physical offsets for sparse PMRs may result in 32-bit truncation of address computations for PMRs larger than 4 GB. This can lead to incorrect GPU MMU mappings and may allow a non-privileged user to trigger access to unintended physical memory, resulting in memory corruption or information disclosure.
Published Date July 24, 2026
Official Source NIST NVD Advisory