Use After Free Vulnerability in Arm Ltd Valhall GPU Userspace Driver
CVE-2026-11891
Currently unrated
Key Information:
- Vendor
Arm
- Vendor
- CVE Published:
- 8 September 2026
What is CVE-2026-11891?
A use after free vulnerability exists in the Arm Ltd Valhall GPU Userspace Driver that allows a non-privileged user process to access previously freed memory. This can occur during GPU processing operations conducted via platforms such as WebGL or WebGPU, potentially leading to unauthorized access and manipulation in the application's memory space. Affected versions include multiple releases from r46p0 to r55p0, highlighting the importance for users to update promptly to mitigate risks associated with this flaw.
Affected Version(s)
Arm 5th Gen GPU Architecture Userspace Driver r46p0
Arm 5th Gen GPU Architecture Userspace Driver r50p0
Arm 5th Gen GPU Architecture Userspace Driver r55p0