"π¨ Urgent Patch Released for Mali GPU Kernel Driver Amidst Active Exploitation π¨"
Arm has urgently patched a critical vulnerability in the Mali GPU Kernel Driver, which has been actively exploited in the wild. The flaw, CVE-2023-4211, affects multiple driver versions and allows a local non-privileged user to manipulate GPU memory processing, gaining access to previously freed memory. The exploitation evidence suggests a limited, targeted approach. π―π‘οΈ
The issue was identified by Maddie Stone of Google's Threat Analysis Group (TAG) and Jann Horn of Google Project Zero. Googleβs Android Security Bulletin also highlighted targeted exploitation of this CVE and another severe flaw, CVE-2023-4863, in the Chrome web browser. π΅οΈββοΈπ
Source: The Hacker News
Tags: #CyberSecurity #Vulnerability #Patch #MaliGPU #Arm #Exploit #CVE20234211 #CyberAttack #InfoSec
π MITRE CVE-2023-4211
π₯ Authors: Maddie Stone @maddiestone
Twitter ) & Jann Horn @tehjh
Twitter
Edit: added mastodon accounts of researchers
β