"🚨 Urgent Patch Released for Mali GPU Kernel Driver Amidst Active Exploitation 🚨"

Arm has urgently patched a critical vulnerability in the Mali GPU Kernel Driver, which has been actively exploited in the wild. The flaw, CVE-2023-4211, affects multiple driver versions and allows a local non-privileged user to manipulate GPU memory processing, gaining access to previously freed memory. The exploitation evidence suggests a limited, targeted approach. πŸŽ―πŸ›‘οΈ

The issue was identified by Maddie Stone of Google's Threat Analysis Group (TAG) and Jann Horn of Google Project Zero. Google’s Android Security Bulletin also highlighted targeted exploitation of this CVE and another severe flaw, CVE-2023-4863, in the Chrome web browser. πŸ•΅οΈβ€β™€οΈπŸ”

Source: The Hacker News

Tags: #CyberSecurity #Vulnerability #Patch #MaliGPU #Arm #Exploit #CVE20234211 #CyberAttack #InfoSec

πŸ”— MITRE CVE-2023-4211

πŸ‘₯ Authors: Maddie Stone @maddiestone   Twitter ) & Jann Horn @tehjh   Twitter

Edit: added mastodon accounts of researchers

Arm Issues Patch for Mali GPU Kernel Driver Vulnerability Amidst Ongoing Exploitation

Arm has just released patches to fix a critical security flaw in Mali GPU Kernel Drivers. Learn more about CVE-2023-4211.

The Hacker News