CVE-2021-29256
Arm Mali GPU Kernel Driver Use-After-Free Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
YesDecision
Descriptions
. The Arm Mali GPU kernel driver allows an unprivileged user to achieve access to freed memory, leading to information disclosure or root privilege escalation. This affects Bifrost r16p0 through r29p0 before r30p0, Valhall r19p0 through r29p0 before r30p0, and Midgard r28p0 through r30p0.
El controlador del kernel de la GPU Arm Mali, permite a un usuario no privilegiado acceder a la memoria liberada, conllevando a una divulgación de información o una escalada de privilegios de root. Esto afecta a Bifrost versiones r16p0 hasta r29p0 anteriores a r30p0, Valhall r19p0 hasta r29p0 anteriores a r30p0 y Midgard versiones r28p0 hasta r30p0
Arm Mali GPU Kernel Driver contains a use-after-free vulnerability that may allow a non-privileged user to gain root privilege and/or disclose information.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-03-26 CVE Reserved
- 2021-05-24 CVE Published
- 2023-07-07 Exploited in Wild
- 2023-07-28 KEV Due Date
- 2024-04-15 EPSS Updated
- 2024-08-03 CVE Updated
- ---------- First Exploit
CWE
- CWE-416: Use After Free
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://developer.arm.com/support/arm-security-updates/mali-gpu-kernel-driver | 2022-03-22 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Arm Search vendor "Arm" | Bifrost Search vendor "Arm" for product "Bifrost" | >= r16p0-01eac0 < r30p0-01eac0 Search vendor "Arm" for product "Bifrost" and version " >= r16p0-01eac0 < r30p0-01eac0" | - |
Affected
| ||||||
Arm Search vendor "Arm" | Midgard Search vendor "Arm" for product "Midgard" | >= r28p0-01eac0 <= r30p0-01eac0 Search vendor "Arm" for product "Midgard" and version " >= r28p0-01eac0 <= r30p0-01eac0" | - |
Affected
| ||||||
Arm Search vendor "Arm" | Valhall Search vendor "Arm" for product "Valhall" | >= r19p0-01eac0 < r30p0-01eac0 Search vendor "Arm" for product "Valhall" and version " >= r19p0-01eac0 < r30p0-01eac0" | - |
Affected
|