CVE-2023-6363Use After Free in ARM 5TH GEN GPU Architecture Kernel Driver

CWE-416Use After Free3 documents3 sources
Severity
5.1MEDIUMNVD
EPSS
0.0%
top 90.23%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 3

Description

Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU memory processing operations. If the system’s memory is carefully prepared by the user, then this in turn could give them access to already freed memory. This issue affects Valhall GPU Kernel Driver: from r41p0 through r47p0; Arm 5th Gen GPU Architecture Kernel Driver: from r41p0 through r47p0.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:LExploitability: 2.5 | Impact: 2.5

Affected Packages5 packages

🔴Vulnerability Details

1
GHSA
GHSA-gg2x-v7xp-pj7x: Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged us2024-05-03

📋Vendor Advisories

1
Android
CVE-2023-6363: Mali2024-05-01