PT-2023-8464 · Imagination Technologies · Powervr Gpu Driver

Published

2023-12-01

·

Updated

2023-12-22

·

CVE-2023-21215

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions PowerVR GPU driver versions (affected versions not specified)
Description The issue is related to a race condition in the DevmemIntAcquireRemoteCtx() function of the PowerVR GPU driver, which can lead to arbitrary code execution and local escalation of privilege in the kernel. This can be exploited without additional execution privileges or user interaction.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Time Of Check To Time Of Use

Race Condition

Weakness Enumeration

Related Identifiers

BDU:2024-00914
CVE-2023-21215

Affected Products

Powervr Gpu Driver