// For flags

CVE-2021-29256

Arm Mali GPU Kernel Driver Use-After-Free Vulnerability

Severity Score

8.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

Yes
*KEV

Decision

-
*SSVC
Descriptions

. The Arm Mali GPU kernel driver allows an unprivileged user to achieve access to freed memory, leading to information disclosure or root privilege escalation. This affects Bifrost r16p0 through r29p0 before r30p0, Valhall r19p0 through r29p0 before r30p0, and Midgard r28p0 through r30p0.

El controlador del kernel de la GPU Arm Mali, permite a un usuario no privilegiado acceder a la memoria liberada, conllevando a una divulgación de información o una escalada de privilegios de root. Esto afecta a Bifrost versiones r16p0 hasta r29p0 anteriores a r30p0, Valhall r19p0 hasta r29p0 anteriores a r30p0 y Midgard versiones r28p0 hasta r30p0

Arm Mali GPU Kernel Driver contains a use-after-free vulnerability that may allow a non-privileged user to gain root privilege and/or disclose information.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
Single
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2021-03-26 CVE Reserved
  • 2021-05-24 CVE Published
  • 2023-07-07 Exploited in Wild
  • 2023-07-28 KEV Due Date
  • 2024-04-15 EPSS Updated
  • 2024-08-03 CVE Updated
  • ---------- First Exploit
CWE
  • CWE-416: Use After Free
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Arm
Search vendor "Arm"
Bifrost
Search vendor "Arm" for product "Bifrost"
>= r16p0-01eac0 < r30p0-01eac0
Search vendor "Arm" for product "Bifrost" and version " >= r16p0-01eac0 < r30p0-01eac0"
-
Affected
Arm
Search vendor "Arm"
Midgard
Search vendor "Arm" for product "Midgard"
>= r28p0-01eac0 <= r30p0-01eac0
Search vendor "Arm" for product "Midgard" and version " >= r28p0-01eac0 <= r30p0-01eac0"
-
Affected
Arm
Search vendor "Arm"
Valhall
Search vendor "Arm" for product "Valhall"
>= r19p0-01eac0 < r30p0-01eac0
Search vendor "Arm" for product "Valhall" and version " >= r19p0-01eac0 < r30p0-01eac0"
-
Affected