Use After Free Vulnerability in Arm Ltd Valhall GPU Kernel Driver
CVE-2025-0072

7.8HIGH

Key Information:

What is CVE-2025-0072?

A Use After Free vulnerability in Arm Ltd's Valhall GPU Kernel Driver allows a local non-privileged user to exploit improper GPU memory processing. This flaw may lead to accessing already freed memory, posing a risk to system integrity and confidentiality. The affected driver versions span from r29p0 to r49p3 and from r50p0 to r53p0, including the Arm 5th Gen GPU Architecture Kernel Driver. Proper patching and security practices are crucial to mitigate risks associated with this vulnerability.

Affected Version(s)

Arm 5th Gen GPU Architecture Kernel Driver r41p0

Arm 5th Gen GPU Architecture Kernel Driver r50p0

Valhall GPU Kernel Driver r29p0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.