Arm has made security updates available to address a vulnerability in the Mali GPU Kernel Driver that has been actively exploited in the wild.
The flaw, identified as CVE-2023-4211, affects the following driver versions. All iterations of the Midgard GPU Kernel Driver, from r12p0 to r32p0.All iterations of the Bifrost GPU Kernel Driver, from r0p0 to r42p0. All variations of the Valhall GPU Kernel Driver, from r19p0 to r42p0.
All iterations of the Arm 5th Gen GPU Architecture Kernel Driver, from r41p0 to r42p0. A local non-privileged user has the ability to perform inappropriate GPU memory processing operations to acquire access to memory that has previously been released, Arm said on Monday. “There is evidence that this vulnerability may be under limited, targeted exploitation.”