CVE-2022-46395
Android Arm Mali GPU Arbitrary Code Execution
Severity Score
8.8
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
1
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
An issue was discovered in the Arm Mali GPU Kernel Driver. A non-privileged user can make improper GPU processing operations to gain access to already freed memory. This affects Midgard r0p0 through r32p0, Bifrost r0p0 through r41p0 before r42p0, Valhall r19p0 through r41p0 before r42p0, and Avalon r41p0 before r42p0.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2022-12-04 CVE Reserved
- 2023-03-06 CVE Published
- 2024-06-28 First Exploit
- 2024-08-03 CVE Updated
- 2024-11-08 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-416: Use After Free
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
http://packetstormsecurity.com/files/172855/Android-Arm-Mali-GPU-Arbitrary-Code-Execution.html |
URL | Date | SRC |
---|---|---|
https://github.com/SmileTabLabo/CVE-2022-46395 | 2024-06-28 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20Vulnerabilities | 2023-12-13 | |
https://developer.arm.com/support/arm-security-updates | 2023-12-13 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Arm Search vendor "Arm" | Avalon Gpu Kernel Driver Search vendor "Arm" for product "Avalon Gpu Kernel Driver" | r41p0 Search vendor "Arm" for product "Avalon Gpu Kernel Driver" and version "r41p0" | - |
Affected
| ||||||
Arm Search vendor "Arm" | Bifrost Gpu Kernel Driver Search vendor "Arm" for product "Bifrost Gpu Kernel Driver" | >= r0p0 <= r41p0 Search vendor "Arm" for product "Bifrost Gpu Kernel Driver" and version " >= r0p0 <= r41p0" | - |
Affected
| ||||||
Arm Search vendor "Arm" | Midgard Gpu Kernel Driver Search vendor "Arm" for product "Midgard Gpu Kernel Driver" | >= r0p0 <= r32p0 Search vendor "Arm" for product "Midgard Gpu Kernel Driver" and version " >= r0p0 <= r32p0" | - |
Affected
| ||||||
Arm Search vendor "Arm" | Valhall Gpu Kernel Driver Search vendor "Arm" for product "Valhall Gpu Kernel Driver" | >= r19p0 <= r41p0 Search vendor "Arm" for product "Valhall Gpu Kernel Driver" and version " >= r19p0 <= r41p0" | - |
Affected
|