CVE-2023-32804

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Dec 4, 2023
Updated: Dec 7, 2023
CWE ID 787

Summary

CVE-2023-32804 is a vulnerability affecting the Arm Ltd Midgard, Bifrost, Valhall GPU Userspace Drivers, and Arm 5th Gen GPU Architecture Userspace Driver. A local non-privileged user can exploit an out-of-bounds write issue, allowing them to write to a limited, unallocated memory area with a constant pattern. The Midgard driver is impacted from r0p0 to r32p0, Bifrost from r0p0 to r44p0, Valhall from r19p0 to r44p0, and Arm 5th Gen GPU Architecture Userspace Driver from r41p0 to r44p0. This vulnerability could potentially lead to arbitrary code execution or system instability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Arm Valhall Gpu Kernel Driver

Affected Vendors

  • Arm Ltd