CVE-2023-48409

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Dec 8, 2023
Updated: Mar 12, 2024
CWE ID 190

Summary

CVE-2023-48409 is a newly identified vulnerability affecting the gpu_pixel_handle_buffer_liveness_update_ioctl function in the Mali KBase Linux driver. This issue arises due to an integer overflow, which in turn leads to a possible out-of-bounds write. An attacker can exploit this vulnerability to escalate privileges locally, without requiring any additional execution privileges or user interaction.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share