Article Details
Scrape Timestamp (UTC): 2024-06-11 06:40:07.812
Source: https://thehackernews.com/2024/06/arm-warns-of-actively-exploited-zero.html
Original Article Text
Click to Toggle View
Arm Warns of Actively Exploited Zero-Day Vulnerability in Mali GPU Drivers. Arm is warning of a security vulnerability impacting Mali GPU Kernel Driver that it said has been actively exploited in the wild. Tracked as CVE-2024-4610, the use-after-free issue impacts the following products - "A local non-privileged user can make improper GPU memory processing operations to gain access to already freed memory," the company said in an advisory last week. The vulnerability has been addressed in Bifrost and Valhall GPU Kernel Driver r41p0. It's worth noting that this version was released in November, 2022. The current version of the drivers is r49p0, which was shipped in April 2024. The Hacker News has reached out to Arm to clarify whether this was an old security flaw that's now being assigned a new CVE identifier or if it was newly discovered, and will update the story if we hear back. The British semiconductor company further acknowledged reports of the shortcoming being exploited in real-world attacks, but did not disclose any additional specifics to prevent further abuse. That said, previously disclosed zero-day flaws in Arm Mali GPU – CVE-2022-38181 and CVE-2023-4211 – have been weaponized by commercial spyware vendors for highly targeted attacks aimed at Android devices, with the exploitation of the latter linked to an Italian company named Cy4Gate. Users of affected products are recommended to update to the appropriate version to secure against potential threats. Continuous Attack Surface Discovery & Penetration Testing Continuously discover, prioritize, & mitigate exposures with evidence-backed ASM, Pentesting, and Red Teaming.
Daily Brief Summary
Arm has announced a zero-day vulnerability, CVE-2024-4610, in Mali GPU Kernel Drivers that is actively being exploited.
The vulnerability, described as a use-after-free issue, allows unauthorized access to freed GPU memory.
Affected drivers, specifically Bifrost and Valhall GPU Kernel Driver r41p0, have been patched as of November 2022.
Current driver version r49p0 was released in April 2024.
The flaw has been reportedly exploited in real-world attacks, though specific details haven't been disclosed by Arm.
Previous CVEs in Mali GPU have been used in targeted spyware attacks by commercial vendors, notably affecting Android devices.
Users of any affected products are strongly advised to update their systems to the latest secure driver version.
Arm and security resources emphasize the importance of ongoing monitoring and regular updates to mitigate such vulnerabilities.