← Voltar para CVEs
CVE-2021-28664
HIGHCISA KEV8.8
Descricao
The Arm Mali GPU kernel driver allows privilege escalation or a denial of service (memory corruption) because an unprivileged user can achieve read/write access to read-only pages. This affects Bifrost r0p0 through r29p0 before r30p0, Valhall r19p0 through r29p0 before r30p0, and Midgard r8p0 through r30p0 before r31p0.
Detalhes CVE
Pontuacao CVSS v3.18.8
SeveridadeHIGH
Vetor CVSSCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vetor de ataqueNETWORK
ComplexidadeLOW
Privilegios necessariosLOW
Interacao do usuarioNONE
Publicado5/10/2021
Ultima modificacao11/3/2025
Fontekev
Avistamentos honeypot0
CISA KEV
FornecedorArm
ProdutoMali Graphics Processing Unit (GPU)
Nome da vulnerabilidadeArm Mali Graphics Processing Unit (GPU) Unspecified Vulnerability
Data inclusao KEV2021-11-03
Prazo de remediacao2021-11-17
Uso em ransomwareUnknown
Produtos afetados
arm:bifrost_gpu_kernel_driverarm:midgard_gpu_kernel_driverarm:valhall_gpu_kernel_driver
Fraquezas (CWE)
CWE-787CWE-787
Referencias
https://developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20Vulnerabilities(cve@mitre.org)
https://developer.arm.com/support/arm-security-updates(cve@mitre.org)
https://developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20Vulnerabilities(af854a3a-2127-422b-91ae-364da2661108)
https://developer.arm.com/support/arm-security-updates(af854a3a-2127-422b-91ae-364da2661108)
https://developer.arm.com/support/arm-security-updates/mali-gpu-kernel-driver(af854a3a-2127-422b-91ae-364da2661108)
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-28664(134c704f-9b21-4f2e-91b3-4a467353bcc0)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.