PT-2022-6514 · Arm · Arm Mali Gpu Kernel Driver

Published

2022-01-06

·

Updated

2026-04-17

·

CVE-2022-22706

CVSS v3.1

7.8

High

AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Arm Mali GPU Kernel Driver versions r26p0 through r31p0 Arm Mali GPU Kernel Driver versions r0p0 through r35p0 Arm Mali GPU Kernel Driver versions r19p0 through r35p0
Description The Arm Mali GPU Kernel Driver has a vulnerability related to insufficient access control, allowing a non-privileged user to gain write access to read-only memory pages. This issue affects the Midgard, Bifrost, and Valhall architectures. The vulnerability can be exploited to elevate privileges. According to reports, the time it takes to fix and integrate patches for such vulnerabilities can be significant, making known vulnerabilities as effective as zero-day exploits for attackers.
Recommendations For Arm Mali GPU Kernel Driver versions r26p0 through r31p0, update to a version that includes the fix for this vulnerability. For Arm Mali GPU Kernel Driver versions r0p0 through r35p0, update to a version that includes the fix for this vulnerability. For Arm Mali GPU Kernel Driver versions r19p0 through r35p0, update to a version that includes the fix for this vulnerability. As a temporary workaround, consider restricting access to the vulnerable driver until a patch is available.

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

ASB-A-225040268
BDU:2023-01878
CVE-2022-22706

Affected Products

Arm Mali Gpu Kernel Driver