CVE-2023-4272

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
07/11/2023
Last modified:
04/09/2024

Description

A local non-privileged user can make GPU processing operations that expose sensitive data from previously freed memory. <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:arm:bifrost_gpu_kernel_driver:*:*:*:*:*:*:*:* r0p0 (including) r41p0 (including)
cpe:2.3:a:arm:mali_gpu_kernel_driver:r41p0:*:*:*:*:*:*:*
cpe:2.3:a:arm:midgard_gpu_kernel_driver:*:*:*:*:*:*:*:* r8p0 (including) r32p0 (including)
cpe:2.3:a:arm:valhall_gpu_kernel_driver:*:*:*:*:*:*:*:* r19p0 (including) r41p0 (including)