Mali GPU Kernel Driver allows improper GPU processing operations
CVE-2023-5427
7.8HIGH
Key Information:
- Vendor
- Arm Ltd
- Status
- Bifrost Gpu Kernel Driver
- Valhall Gpu Kernel Driver
- Arm 5th Gen Gpu Architecture Kernel Driver
- Vendor
- CVE Published:
- 1 December 2023
Summary
A vulnerability exists within the Bifrost, Valhall, and 5th Gen GPU kernel drivers from Arm Ltd that allows a local non-privileged user to conduct improper GPU processing operations. This may lead to unauthorized access and manipulation of already freed memory, creating potential security risks. The flaw affects specific driver versions from r44p0 through r45p0.
Affected Version(s)
Arm 5th Gen GPU Architecture Kernel Driver r44p0
Bifrost GPU Kernel Driver r44p0
Valhall GPU Kernel Driver r44p0
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved