PT-2022-6153 · Arm · Arm Mali Gpu Kernel Driver

Published

2022-07-24

·

Updated

2025-04-07

·

CVE-2022-36449

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Arm Mali GPU Kernel Driver versions Midgard r4p0 through r32p0 Arm Mali GPU Kernel Driver versions Bifrost r0p0 through r38p0 and r39p0 before r38p1 Arm Mali GPU Kernel Driver versions Valhall r19p0 through r38p0 and r39p0 before r38p1
Description The issue allows a non-privileged user to make improper GPU processing operations, potentially gaining access to already freed memory, writing outside of buffer bounds, or disclosing details of memory mappings. This can be exploited by a remote attacker to elevate privileges or gain unauthorized access to protected information.
Recommendations For Arm Mali GPU Kernel Driver versions Midgard r4p0 through r32p0, update to a version outside of the affected range to mitigate the risk. For Arm Mali GPU Kernel Driver versions Bifrost r0p0 through r38p0 and r39p0 before r38p1, update to a version after r38p1 to resolve the issue. For Arm Mali GPU Kernel Driver versions Valhall r19p0 through r38p0 and r39p0 before r38p1, update to a version after r38p1 to resolve the issue.

Fix

Use After Free

Weakness Enumeration

Related Identifiers

ASB-A-259983537
BDU:2023-00227
CVE-2022-36449

Affected Products

Arm Mali Gpu Kernel Driver