CVE-2025-1246: Mali GPU Userspace Driver allows an Out-of-Bounds access

Published Jun 2, 2025
·
Updated

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Arm Ltd Bifrost GPU Userspace Driver, Arm Ltd Valhall GPU Userspace Driver, Arm Ltd Arm 5th Gen GPU Architecture Userspace Driver allows a non-privileged user process to perform valid GPU processing operations, including via WebGL or WebGPU, to access outside of buffer bounds.This issue affects Bifrost GPU Userspace Driver: from r18p0 through r49p3, from r50p0 through r51p0; Valhall GPU Userspace Driver: from r28p0 through r49p3, from r50p0 through r54p0; Arm 5th Gen GPU Architecture Userspace Driver: from r41p0 through r49p3, from r50p0 through r54p0.

Affected Software

11 affected components
Arm Bifrost GPU Userspace Driver>=r18p0<=r49p3, >=r50p0<=r51p0
Arm Valhall GPU Userspace Driver>=r28p0<=r49p3, >=r50p0<=r54p0
Arm 5th Gen GPU Architecture Userspace Driver>=r41p0<=r49p3, >=r50p0<=r54p0
Arm 5th Gen GPU Architecture Userspace Driver>=r41p0<r49p4
Arm 5th Gen GPU Architecture Userspace Driver>=r50p0<r54p1
Arm Bifrost GPU Userspace Driver>=r48p0<r49p4
Arm Bifrost GPU Userspace Driver=r50p0
Arm Bifrost GPU Userspace Driver=r51p0
Arm Valhall GPU Userspace Driver>=r28p0<r49p4
Arm Valhall GPU Userspace Driver>=r50p0<r54p1
Google Android

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade Arm Ltd Bifrost GPU Userspace Driver to a version that resolves this vulnerability.

    Fixed in r49p4
  2. Upgrade

    Upgrade Arm Ltd Bifrost GPU Userspace Driver to a version that resolves this vulnerability.

    Fixed in r54p1
  3. Upgrade

    Upgrade Arm Ltd Valhall GPU Userspace Driver to a version that resolves this vulnerability.

    Fixed in r49p4
  4. Upgrade

    Upgrade Arm Ltd Valhall GPU Userspace Driver to a version that resolves this vulnerability.

    Fixed in r54p1
  5. Upgrade

    Upgrade Arm 5th Gen GPU Architecture Userspace Driver to a version that resolves this vulnerability.

    Fixed in r49p4
  6. Upgrade

    Upgrade Arm 5th Gen GPU Architecture Userspace Driver to a version that resolves this vulnerability.

    Fixed in r54p1

Event History

Jun 2, 2025
CVE Published
via MITRE·11:06 AM
Data Sourced
via MITRE·11:06 AM
RemedyDescriptionWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeaknessAffected Software
Sep 2, 2025
Data Sourced
via Android·12:00 AM
SeverityAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2025-1246?

The severity of CVE-2025-1246 is considered high, as it allows a non-privileged user to manipulate GPU processes.

2

How do I fix CVE-2025-1246?

To fix CVE-2025-1246, update the affected Arm GPU Userspace Drivers to the latest patched versions.

3

Which software is affected by CVE-2025-1246?

CVE-2025-1246 affects the Arm Bifrost, Valhall, and 5th Gen GPU Userspace Drivers within specific version ranges.

4

What causes the vulnerability CVE-2025-1246?

CVE-2025-1246 is caused by improper restriction of operations within the bounds of a memory buffer.

5

Can CVE-2025-1246 be exploited remotely?

CVE-2025-1246 requires local access to the system, making remote exploitation unlikely without prior compromise.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203