CVE-2023-4211

Confirmed PUBLISHED

Mali GPU Kernel Driver Allows Improper GPU Memory Processing Operations

Arm Ltd · Midgard GPU Kernel Driver, Bifrost GPU Kernel Driver, Valhall GPU Kernel Driver, Arm 5th Gen GPU Architecture Kernel Driver
Exploited in the wild

Recommended Action

Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.

Confidence
Confirmed
Exploitation Status
Exploited in the wild
Observed in Sensors
No
Attempts (30d)
Unique Attacker IPs
CISA KEV
In CISA KEV
CVSS / EPSS
5.5 Medium

At a Glance

A local non-privileged user can make improper GPU memory processing operations to gain access to already freed memory.

nessus_scanner cisa
CVE Published
Oct 01, 2023
Exploitation Reported
Oct 03, 2023
CVSS
5.5 Medium
EPSS
Low complexity No user interaction

Affected Versions

Vendor Product Version Status
Arm Ltd
Midgard GPU Kernel Driver

r12p0 to <= r32p0

Affected
Arm Ltd
Bifrost GPU Kernel Driver

r0p0 to <= r42p0

Affected
Arm Ltd
Valhall GPU Kernel Driver

r19p0 to <= r42p0

Affected
Arm Ltd
Arm 5th Gen GPU Architecture Kernel Driver

r41p0 to <= r42p0

Affected

CVE References

Recommended Actions

  • Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.
  • Check enrichment artifacts for scanner coverage and available PoCs before rolling remediation validation.
  • Use the Pro API to automate enrichment, telemetry, and workflow delivery for VM, SOC, and CTI pipelines.