Use After Free Vulnerability in Arm Ltd Valhall GPU Userspace Driver
CVE-2026-11891

Currently unrated

What is CVE-2026-11891?

A use after free vulnerability exists in the Arm Ltd Valhall GPU Userspace Driver that allows a non-privileged user process to access previously freed memory. This can occur during GPU processing operations conducted via platforms such as WebGL or WebGPU, potentially leading to unauthorized access and manipulation in the application's memory space. Affected versions include multiple releases from r46p0 to r55p0, highlighting the importance for users to update promptly to mitigate risks associated with this flaw.

Affected Version(s)

Arm 5th Gen GPU Architecture Userspace Driver r46p0

Arm 5th Gen GPU Architecture Userspace Driver r50p0

Arm 5th Gen GPU Architecture Userspace Driver r55p0

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Anymous
.