CISA Known Exploited Vulnerability

CVE-2024-4610

Arm · Mali GPU Kernel Driver

Arm Mali GPU Kernel Driver Use-After-Free Vulnerability

Date added
BOD 22-01 due date
CWE CWE-416
Ransomware Unknown

CISA description

Arm Bifrost and Valhall GPU kernel drivers contain a use-after-free vulnerability that allows a local, non-privileged user to make improper GPU memory processing operations to gain access to already freed memory.

Required action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.