CVE-2023-28147
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Summary
CVE-2023-28147 is a vulnerability affecting various versions of Arm Mali GPU Kernel Drivers. A non-privileged user can exploit this issue to perform unauthorized GPU processing operations, potentially gaining access to already freed memory. This affects Midgard r29p0 through r32p0, Bifrost r17p0 through r42p0 before r43p0, Valhall r19p0 through r42p0 before r43p0, and Arm's GPU Architecture Gen5 r41p0 through r42p0 before r43p0. Successful exploitation could lead to information disclosure or denial of service. Users are advised to update their affected drivers to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Arm Valhall Gpu Kernel Driver
- Arm Bifrost Gpu Kernel Driver
Affected Vendors
- Arm Ltd