Today > vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-0153

July 1, 2024, 12:37 p.m.

Product(s) Impacted

Arm Ltd Valhall GPU Firmware

  • r29p0 - r46p0

Arm Ltd Arm 5th Gen GPU Architecture Firmware

  • r41p0 - r46p0

Description

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Arm Ltd Valhall GPU Firmware, Arm Ltd Arm 5th Gen GPU Architecture Firmware allows a local non-privileged user to make improper GPU processing operations to access a limited amount outside of buffer bounds. If the operations are carefully prepared, then this in turn could give them access to all system memory. This issue affects Valhall GPU Firmware: from r29p0 through r46p0; Arm 5th Gen GPU Architecture Firmware: from r41p0 through r46p0.

Weaknesses

CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it can read from or write to a memory location that is outside of the intended boundary of the buffer.

CWE ID: 119

Date

Published: July 1, 2024, 9:15 a.m.

Last Modified: July 1, 2024, 12:37 p.m.

Status : Awaiting Analysis

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

arm-security@arm.com

References

https://developer.arm.com/ arm-security@arm.com