KEVIntel
7.8
CVSS
High

CVE-2024-4610

PUBLISHED

Mali GPU Kernel Driver allows improper GPU memory processing operations

Exploited in the wild Low complexity No user interaction
Vendor
Arm Ltd
Product
Bifrost GPU Kernel Driver, Valhall GPU Kernel Driver
Published
Jun 07, 2024
EPSS

Description

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver allows a local non-privileged user to make improper GPU memory processing operations to gain access to already freed memory.This issue affects Bifrost GPU Kernel Driver: from r34p0 through r40p0; Valhall GPU Kernel Driver: from r34p0 through r40p0.

cisa

CVSS scores

CVSS v3.1 7.8 High

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Exploitation status

Exploited in the wild

Recorded 2024-06-12 00:00:00 UTC · Source

SSVC decision points

Exploitation
active
Automatable
No
Technical impact
total

Known exploited vulnerability sources

Catalogues that list this CVE as a known exploited vulnerability.

Source Added
CISA Jun 12, 2024

Timeline

  • CVE ID Reserved

  • CVE Published to Public

  • Added to KEVIntel