8.8 High
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
0.687 Medium
EPSS
Percentile
98.0%
The Arm Mali GPU kernel driver allows unprivileged users to access freed memory because GPU memory operations are mishandled. This affects Bifrost r0p0 through r38p1, and r39p0; Valhall r19p0 through r38p1, and r39p0; and Midgard r4p0 through r32p0.
Recent assessments:
Assessed Attacker Value: 0
Assessed Attacker Value: 0Assessed Attacker Value: 0
packetstormsecurity.com/files/172854/Android-Arm-Mali-GPU-Arbitrary-Code-Execution.html
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38181
developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20Vulnerabilities
developer.arm.com/support/arm-security-updates
github.blog/2023-01-23-pwning-the-all-google-phone-with-a-non-google-bug/
github.com/Pro-me3us/CVE_2022_38181_Gazelle
github.com/Pro-me3us/CVE_2022_38181_Raven
securitylab.github.com/advisories/GHSL-2022-054_Arm_Mali/
8.8 High
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
0.687 Medium
EPSS
Percentile
98.0%