PT-2024-15735 · Arm · Arm Valhall Gpu Kernel Driver+3

Published

2024-04-19

·

Updated

2025-03-27

·

CVE-2024-0671

CVSS v3.1

6.8

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N
Name of the Vulnerable Software and Affected Versions Arm Ltd Midgard GPU Kernel Driver versions r19p0 through r32p0 Arm Ltd Bifrost GPU Kernel Driver versions r7p0 through r48p0 Arm Ltd Valhall GPU Kernel Driver versions r19p0 through r48p0 Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver versions r41p0 through r48p0
Description The issue allows a local non-privileged user to make improper GPU memory processing operations to gain access to already freed memory. This is due to a Use After Free vulnerability in the Arm Ltd GPU Kernel Drivers.
Recommendations For Arm Ltd Midgard GPU Kernel Driver versions r19p0 through r32p0, update to a version outside of this range to resolve the issue. For Arm Ltd Bifrost GPU Kernel Driver versions r7p0 through r48p0, update to a version outside of this range to resolve the issue. For Arm Ltd Valhall GPU Kernel Driver versions r19p0 through r48p0, update to a version outside of this range to resolve the issue. For Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver versions r41p0 through r48p0, update to a version outside of this range to resolve the issue.

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ASB-A-329094549
CVE-2024-0671

Affected Products

Arm 5Th Gen Gpu Architecture Kernel Driver
Arm Bifrost Gpu Kernel Driver
Arm Ltd Midgard Gpu Kernel Driver
Arm Valhall Gpu Kernel Driver