LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →
Home / Vulnerability Intelligence / CVE-2026-21732

CVE-2026-21732 - Vulnerability Analysis

CriticalCVSS: 9.6

Last Updated: March 23, 2026

GPU Shader Compiler - Out of Bounds Write

Published: March 20, 2026Updated: March 23, 2026Remote Exploitable

Overview

A GPU shader compiler contains an out-of-bounds write vulnerability caused by processing unusual GPU shader code with large switch statement values, letting attackers trigger crashes and potentially escalate privileges on certain platforms, exploit requires loading crafted shader code.

Severity & Score

Severity: Critical
CVSS Score: 9.6
EPSS Score: 1.8%(Probability of exploitation in next 30 days)

Impact

Attackers can cause crashes and potentially escalate privileges on affected devices, leading to denial of service or further exploitation.

Mitigation

Update to the latest version of the GPU shader compiler with the vulnerability fixed.

Social Media Activity(2 posts)

TheHackerWire
TheHackerWire
@thehackerwire
Mar 23, 2026

šŸ”“ CVE-2026-21732 - Critical (9.6) A web page that contains unusual GPU shader code is loaded into the GPU compiler process and can trigger a write out-of-bounds write crash in the GPU shader compiler library. On certain platforms, when the compiler process has system privileges th... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-21732/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post
TheHackerWire
TheHackerWire
@thehackerwire
Mar 23, 2026

šŸ”“ CVE-2026-21732 - Critical (9.6) A web page that contains unusual GPU shader code is loaded into the GPU compiler process and can trigger a write out-of-bounds write crash in the GPU shader compiler library. On certain platforms, when the compiler process has system privileges th... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-21732/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post

Details

CVE ID
CVE-2026-21732
Severity
Critical
CVSS Score
9.6
Type
out_of_bounds_rw
Status
unconfirmed
EPSS
1.8%
Social Posts
2

CWE

  • CWE-823

CVSS Metrics

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

EPSS Score

1.8%Probability of exploitation in the next 30 days