Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver allows a local non-privileged user to make improper memory processing operations to exploit a software race condition. If the system’s memory is carefully prepared by the user, then this in turn cause a use-after-free.This issue affects Bifrost GPU Kernel Driver: from r35p0 through r40p0; Valhall GPU Kernel Driver: from r35p0 through r40p0.
References
| Link | Resource |
|---|---|
| https://developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20Vulnerabilities | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
13 Feb 2024, 00:37
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:arm:valhall_gpu_kernel_driver:*:*:*:*:*:*:*:* cpe:2.3:a:arm:bifrost_gpu_kernel_driver:*:*:*:*:*:*:*:* |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.0 |
| References | () https://developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20Vulnerabilities - Vendor Advisory | |
| First Time |
Arm bifrost Gpu Kernel Driver
Arm Arm valhall Gpu Kernel Driver |
05 Feb 2024, 13:54
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
05 Feb 2024, 10:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-02-05 10:15
Updated : 2024-02-13 00:37
NVD link : CVE-2023-5249
Mitre link : CVE-2023-5249
CVE.ORG link : CVE-2023-5249
JSON object : View
Products Affected
arm
- bifrost_gpu_kernel_driver
- valhall_gpu_kernel_driver
CWE
CWE-416
Use After Free
