Arm Ltd Valhall Gpu Kernel Driver vulnerabilities

30 known vulnerabilities affecting arm_ltd/valhall_gpu_kernel_driver.

Total CVEs
30
CISA KEV
2
actively exploited
Public exploits
0
Exploited in wild
2
Severity breakdown
HIGH17MEDIUM13

Vulnerabilities

Page 2 of 2
CVE-2023-5249HIGHCVSS 7.0≥ r35p0, ≤ r40p02024-02-05
CVE-2023-5249 [HIGH] CWE-416 CVE-2023-5249: Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver allows a local non-privileged user to make improper memory processing operations to exploit a software race condition. If the system’s memory is carefully prepared by the user, then this in turn cause a use-after-free.This issue affects Bifrost GPU Kerne
nvd
CVE-2023-5643HIGHCVSS 7.8≥ r41p0, ≤ r45p02024-02-05
CVE-2023-5643 [HIGH] CWE-787 CVE-2023-5643: Out-of-bounds Write vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel D Out-of-bounds Write vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU memory processing operations. Depending on the configuration of the Mali GPU Kernel Driver, and if the system’s memory is carefully prepared
nvd
CVE-2023-5091MEDIUMCVSS 5.5≥ r37p0, ≤ r40p02024-01-08
CVE-2023-5091 [MEDIUM] CWE-416 CVE-2023-5091: Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver allows a local non-privileged user Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver allows a local non-privileged user to make improper GPU processing operations to gain access to already freed memory. This issue affects Valhall GPU Kernel Driver: from r37p0 through r40p0.
nvd
CVE-2023-5427HIGHCVSS 7.8≥ r44p0, ≤ r45p02023-12-01
CVE-2023-5427 [HIGH] CWE-416 CVE-2023-5427: Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU processing operations to gain access to already freed memory.This issue affects Bifrost GPU Kernel Driver: from r44p0 through r45p0; Valhall GPU K
nvd
CVE-2023-4295HIGHCVSS 7.8≥ r29p0, < r43p02023-11-07
CVE-2023-4295 [HIGH] CWE-190 CVE-2023-4295: A local non-privileged user can make improper GPU memory processing operations to gain access to alr A local non-privileged user can make improper GPU memory processing operations to gain access to already freed memory.
nvd
CVE-2023-3889HIGHCVSS 7.8≥ r38p0, ≤ r44p02023-11-07
CVE-2023-3889 [HIGH] CWE-119 CVE-2023-3889: A local non-privileged user can make improper GPU memory processing operations. If the operations ar A local non-privileged user can make improper GPU memory processing operations. If the operations are carefully prepared, then they could be used to gain access to already freed memory.
nvd
CVE-2023-4272MEDIUMCVSS 5.5≥ r19p0, < r42p02023-11-07
CVE-2023-4272 [MEDIUM] CWE-200 CVE-2023-4272: A local non-privileged user can make GPU processing operations that expose sensitive data from previ A local non-privileged user can make GPU processing operations that expose sensitive data from previously freed memory.
nvd
CVE-2023-34970MEDIUMCVSS 4.7≥ r44p0, < r44p12023-10-03
CVE-2023-34970 [MEDIUM] CWE-416 CVE-2023-34970: A local non-privileged user can make improper GPU processing operations to access a limited amount o A local non-privileged user can make improper GPU processing operations to access a limited amount outside of buffer bounds or to exploit a software race condition. If the system’s memory is carefully prepared by the user, then this in turn could give them access to already freed memory
nvd
CVE-2023-33200MEDIUMCVSS 4.7≥ r19p0, < r44p12023-10-03
CVE-2023-33200 [MEDIUM] CWE-416 CVE-2023-33200: A local non-privileged user can make improper GPU processing operations to exploit a software race c A local non-privileged user can make improper GPU processing operations to exploit a software race condition. If the system’s memory is carefully prepared by the user, then this in turn could give them access to already freed memory.
nvd
CVE-2023-4211MEDIUMCVSS 5.5KEV≥ r19p0, ≤ r42p02023-10-01
CVE-2023-4211 [MEDIUM] CWE-416 CVE-2023-4211: A local non-privileged user can make improper GPU memory processing operations to gain access to al A local non-privileged user can make improper GPU memory processing operations to gain access to already freed memory.
nvd