Record summary

CVE-2023-4211 has a selected CVSS score of 5.5 (medium). CISA lists CVE-2023-4211 in KEV.

Description

A local non-privileged user can make improper GPU memory processing operations to gain access to already freed memory.

Description source: CVE List

Exploitation context

Known exploitation

CISA KEV
Listed · Oct 3, 2023 · CISA
VulnCheck KEV
Listed · Sep 18, 2023 · VulnCheck
Reported exploitation
Observed · VulnCheck

CISA SSVC decision

ExploitationActive
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Nov 15, 2023 · Source: CVE List

Affected products and versions

5
ProductSourceVersion rangeStatus
CISAVersion data not supplied

Arm 5th Gen GPU Architecture Kernel Driver

Browse Arm Ltd / Arm 5th Gen GPU Architecture Kernel Driver

Default status: unaffected

CVE Listr41p0 to ≤ r42p0affected

Default status: unaffected

CVE Listr0p0 to ≤ r42p0affected

Default status: unaffected

CVE Listr12p0 to ≤ r32p0affected

Default status: unaffected

CVE Listr19p0 to ≤ r42p0affected

References

8