First published: Mon Jan 08 2024(Updated: )
Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver allows a local non-privileged user to make improper GPU processing operations to gain access to already freed memory. This issue affects Valhall GPU Kernel Driver: from r37p0 through r40p0.
Credit: arm-security@arm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Arm Ltd Valhall GPU Kernel Driver | >=r37p0<=r40p0 | |
Android |
This issue is fixed in Valhall GPU Kernel Driver r41p0. Users are recommended to upgrade if they are impacted by this issue.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-5091 is a high-severity vulnerability due to improper GPU processing operations that can lead to unauthorized access to freed memory.
To fix CVE-2023-5091, ensure that you update the Arm Ltd Valhall GPU Kernel Driver to a version later than r40p0.
CVE-2023-5091 affects local non-privileged users operating systems that utilize the Arm Valhall GPU Kernel Driver versions from r37p0 through r40p0.
CVE-2023-5091 is classified as a Use After Free vulnerability which can lead to exploitation through access to already freed memory.
Yes, CVE-2023-5091 can impact Android devices that utilize the vulnerable versions of the Arm Valhall GPU Kernel Driver.