// For flags

CVE-2022-46891

 

Severity Score

8.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

An issue was discovered in the Arm Mali GPU Kernel Driver. There is a use-after-free. A non-privileged user can make improper GPU processing operations to gain access to already freed memory. This affects Midgard r13p0 through r32p0, Bifrost r1p0 through r40p0, and Valhall r19p0 through r40p0.

Se descubrió un problema en el controlador del kernel de GPU Arm Mali. Hay un use-after-free. Un usuario sin privilegios puede realizar operaciones de procesamiento de GPU incorrectas para obtener acceso a la memoria ya liberada. Esto afecta a Midgard r13p0 a r32p0, Bifrost r1p0 a r40p0 y Valhall r19p0 a r40p0.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2022-12-09 CVE Reserved
  • 2023-01-17 CVE Published
  • 2024-08-03 CVE Updated
  • 2024-08-09 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-416: Use After Free
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Arm
Search vendor "Arm"
Bifrost Gpu Kernel Driver
Search vendor "Arm" for product "Bifrost Gpu Kernel Driver"
>= r1p0 <= r40p0
Search vendor "Arm" for product "Bifrost Gpu Kernel Driver" and version " >= r1p0 <= r40p0"
-
Affected
Arm
Search vendor "Arm"
Midgard Gpu Kernel Driver
Search vendor "Arm" for product "Midgard Gpu Kernel Driver"
>= r13p0 <= r32p0
Search vendor "Arm" for product "Midgard Gpu Kernel Driver" and version " >= r13p0 <= r32p0"
-
Affected
Arm
Search vendor "Arm"
Valhall Gpu Kernel Driver
Search vendor "Arm" for product "Valhall Gpu Kernel Driver"
>= r19p0 <= r40p0
Search vendor "Arm" for product "Valhall Gpu Kernel Driver" and version " >= r19p0 <= r40p0"
-
Affected