Use-After-Free Vulnerability in Arm Mali GPU Driver
CVE-2022-46891
8.8HIGH
Summary
An issue has been identified in the Arm Mali GPU Kernel Driver that allows non-privileged users to manipulate GPU processing operations improperly. This vulnerability arises from a use-after-free condition, enabling access to previously freed memory, which can lead to significant security risks if exploited. The driver versions affected span several generations of the Mali architecture, specifically impacting Midgard, Bifrost, and Valhall series from various versions. It's crucial for users and administrators to apply necessary mitigations promptly.
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved