Use After Free Vulnerability in Arm Ltd Valhall GPU Kernel Driver
CVE-2025-0072
7.8HIGH
What is CVE-2025-0072?
A Use After Free vulnerability in Arm Ltd's Valhall GPU Kernel Driver allows a local non-privileged user to exploit improper GPU memory processing. This flaw may lead to accessing already freed memory, posing a risk to system integrity and confidentiality. The affected driver versions span from r29p0 to r49p3 and from r50p0 to r53p0, including the Arm 5th Gen GPU Architecture Kernel Driver. Proper patching and security practices are crucial to mitigate risks associated with this vulnerability.
Affected Version(s)
Arm 5th Gen GPU Architecture Kernel Driver r41p0
Arm 5th Gen GPU Architecture Kernel Driver r50p0
Valhall GPU Kernel Driver r29p0
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved