High Severity Vulnerability in Imagination Technologies PowerVR-GPU Before 2024-09-05
CVE-2024-31336

7.8HIGH

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
11 September 2024

What is CVE-2024-31336?

A vulnerability exists in the PVRSRVBridgeRGXKickTA3D2 function within the server_rgxta3d_bridge.c file, stemming from improper input validation processes. This flaw could potentially allow for arbitrary code execution, resulting in local escalation of privileges within the Android kernel environment. Notably, the exploit can be initiated without requiring user interaction or additional execution privileges, thereby posing significant security risks for affected Android users.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Android Android SoC

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.