CVE-2025-0050: Mali GPU Userspace Driver allows an Out-of-Bounds access
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Arm Ltd Bifrost GPU Userspace Driver, Arm Ltd Valhall GPU Userspace Driver, Arm Ltd Arm 5th Gen GPU Architecture Userspace Driver allows a non-privileged user process to make valid GPU processing operations, including via WebGL or WebGPU, to access a limited amount outside of buffer bounds.This issue affects Bifrost GPU Userspace Driver: from r0p0 through r49p2, from r50p0 through r51p0; Valhall GPU Userspace Driver: from r19p0 through r49p2, from r50p0 through r53p0; Arm 5th Gen GPU Architecture Userspace Driver: from r41p0 through r49p2, from r50p0 through r53p0.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0050?
CVE-2025-0050 is classified as a high-severity vulnerability due to potential unauthorized access to GPU processing capabilities.
How do I fix CVE-2025-0050?
To mitigate CVE-2025-0050, users should update to the latest versions of the affected Arm GPU Userspace Drivers.
What systems are affected by CVE-2025-0050?
CVE-2025-0050 affects Arm Ltd Bifrost, Valhall, and Arm 5th Gen GPU Userspace Drivers versions within specified ranges.
Who is impacted by CVE-2025-0050?
Non-privileged user processes on systems using the vulnerable Arm GPU Drivers are impacted by CVE-2025-0050.
What happens if CVE-2025-0050 is exploited?
If exploited, CVE-2025-0050 could allow unauthorized users to manipulate GPU processing and potentially execute arbitrary code.