The Arm Mali GPU kernel driver allows unprivileged users to access freed memory because GPU memory operations are mishandled. This affects Bifrost r0p0 through r38p1, and r39p0; Valhall r19p0 through r38p1, and r39p0; and Midgard r4p0 through r32p0.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/172854/Android-Arm-Mali-GPU-Arbitrary-Code-Execution.html | Third Party Advisory VDB Entry |
https://developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20Vulnerabilities | Vendor Advisory |
https://developer.arm.com/support/arm-security-updates | Vendor Advisory |
https://github.blog/2023-01-23-pwning-the-all-google-phone-with-a-non-google-bug/ | Exploit Third Party Advisory |
https://securitylab.github.com/advisories/GHSL-2022-054_Arm_Mali/ | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
28 Jun 2024, 13:41
Type | Values Removed | Values Added |
---|---|---|
References | () http://packetstormsecurity.com/files/172854/Android-Arm-Mali-GPU-Arbitrary-Code-Execution.html - Third Party Advisory, VDB Entry |
13 Dec 2023, 13:51
Type | Values Removed | Values Added |
---|---|---|
First Time |
Arm midgard Gpu Kernel Driver
|
|
CPE | cpe:2.3:a:arm:midgard_gpu_kernel_driver:*:*:*:*:*:*:*:* |
12 Jun 2023, 07:16
Type | Values Removed | Values Added |
---|---|---|
References |
|
Information
Published : 2022-10-25 19:15
Updated : 2024-06-28 13:41
NVD link : CVE-2022-38181
Mitre link : CVE-2022-38181
CVE.ORG link : CVE-2022-38181
JSON object : View
Products Affected
arm
- valhall_gpu_kernel_driver
- midgard_gpu_kernel_driver
- bifrost_gpu_kernel_driver
CWE
CWE-416
Use After Free