praetorian-inc / chariot-ui

Chariot Offensive Security Platform
https://preview.chariot.praetorian.com
MIT License
15 stars 6 forks source link

CISA KEV Alert: Arm Mali GPU Kernel Driver Use-After-Free Vulnerability (CVE-2024-4610) #27

Closed UNC1739 closed 3 weeks ago

UNC1739 commented 3 weeks ago

CVE ID: CVE-2024-4610 Vendor/Project: Arm Product: Mali GPU Kernel Driver Vulnerability Name: Arm Mali GPU Kernel Driver Use-After-Free Vulnerability Date Added: 2024-06-12 Short Description: Arm Bifrost and Valhall GPU kernel drivers contain a use-after-free vulnerability that allows a local, non-privileged user to make improper GPU memory processing operations to gain access to already freed memory. Required Action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable. Due Date: 2024-07-03 Known Ransomware Use: Unknown Notes: https://developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20Vulnerabilities