// For flags

CVE-2022-22706

Arm Mali GPU Kernel Driver Unspecified Vulnerability

Severity Score

7.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

Yes
*KEV

Decision

-
*SSVC
Descriptions

Arm Mali GPU Kernel Driver allows a non-privileged user to achieve write access to read-only memory pages. This affects Midgard r26p0 through r31p0, Bifrost r0p0 through r35p0, and Valhall r19p0 through r35p0.

El controlador del kernel de la GPU Arm Mali permite a un usuario sin privilegios conseguir acceso de escritura a páginas de memoria de sólo lectura. Esto afecta a Midgard r26p0 hasta r31p0, Bifrost r0p0 hasta r35p0, y Valhall r19p0 hasta r35p0

Arm Mali GPU Kernel Driver contains an unspecified vulnerability that allows a non-privileged user to achieve write access to read-only memory pages.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2022-01-06 CVE Reserved
  • 2022-03-03 CVE Published
  • 2023-03-30 Exploited in Wild
  • 2023-04-20 KEV Due Date
  • 2024-01-18 EPSS Updated
  • 2024-08-03 CVE Updated
  • ---------- First Exploit
CWE
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Arm
Search vendor "Arm"
Bifrost
Search vendor "Arm" for product "Bifrost"
>= r0p0 < r36p0
Search vendor "Arm" for product "Bifrost" and version " >= r0p0 < r36p0"
-
Affected
Arm
Search vendor "Arm"
Midgard
Search vendor "Arm" for product "Midgard"
>= r26p0 <= r31p0
Search vendor "Arm" for product "Midgard" and version " >= r26p0 <= r31p0"
-
Affected
Arm
Search vendor "Arm"
Valhall
Search vendor "Arm" for product "Valhall"
>= r19p0 < r36p0
Search vendor "Arm" for product "Valhall" and version " >= r19p0 < r36p0"
-
Affected