Arm Mali GPU Drivers Out-of-Bounds Access Vulnerability

Vulnerability

A vulnerability allowing out-of-bounds memory access has been identified in Arm Mali GPU userspace drivers, specifically in the Bifrost, Valhall, and 5th Gen GPU Architecture drivers. This vulnerability allows non-privileged user processes to perform valid GPU operations, including through WebGL or WebGPU, while accessing a limited amount of memory outside of designated buffer bounds.

Impact

Exploitation of this vulnerability could lead to unauthorized memory access, potentially allowing for information leakage or manipulation.

Remediation

Users are advised to upgrade to the following versions: Bifrost GPU Userspace Driver r49p3, Valhall GPU Userspace Driver r49p3 or r54p0, and Arm 5th Gen GPU Architecture Userspace Driver r49p3 or r54p0.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.