Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-0153

Опубликовано: 01 июл. 2024
Источник: nvd
CVSS3: 7.8
EPSS Низкий

Описание

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Arm Ltd Valhall GPU Firmware, Arm Ltd Arm 5th Gen GPU Architecture Firmware allows a local non-privileged user to make improper GPU processing operations to access a limited amount outside of buffer bounds. If the operations are carefully prepared, then this in turn could give them access to all system memory. This issue affects Valhall GPU Firmware: from r29p0 through r46p0; Arm 5th Gen GPU Architecture Firmware: from r41p0 through r46p0.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:arm:5th_gen_gpu_architecture_firmware:*:*:*:*:*:*:*:*
Версия от r41p0 (включая) до r47p0 (исключая)
cpe:2.3:o:arm:valhall_gpu_firmware:*:*:*:*:*:*:*:*
Версия от r29p0 (включая) до r47p0 (исключая)

EPSS

Процентиль: 37%
0.00159
Низкий

7.8 High

CVSS3

Дефекты

CWE-119
CWE-119

Связанные уязвимости

CVSS3: 7.8
github
больше 1 года назад

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Arm Ltd Valhall GPU Firmware, Arm Ltd Arm 5th Gen GPU Architecture Firmware allows a local non-privileged user to make improper GPU processing operations to access a limited amount outside of buffer bounds. If the operations are carefully prepared, then this in turn could give them access to all system memory. This issue affects Valhall GPU Firmware: from r29p0 through r46p0; Arm 5th Gen GPU Architecture Firmware: from r41p0 through r46p0.

EPSS

Процентиль: 37%
0.00159
Низкий

7.8 High

CVSS3

Дефекты

CWE-119
CWE-119