The Arm Mali GPU kernel driver allows privilege escalation or information disclosure because GPU memory operations are mishandled, leading to a use-after-free. This affects Bifrost r0p0 through r28p0 before r29p0, Valhall r19p0 through r28p0 before r29p0, and Midgard r4p0 through r30p0.
Advisories
Source ID Title
EUVD EUVD EUVD-2021-15327 The Arm Mali GPU kernel driver allows privilege escalation or information disclosure because GPU memory operations are mishandled, leading to a use-after-free. This affects Bifrost r0p0 through r28p0 before r29p0, Valhall r19p0 through r28p0 before r29p0, and Midgard r4p0 through r30p0.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 22 Oct 2025 00:15:00 +0000


Tue, 21 Oct 2025 20:30:00 +0000


Tue, 21 Oct 2025 20:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:arm:bifrost_gpu_kernel_driver:-:*:*:*:*:*:*:*
cpe:2.3:a:arm:midgard_gpu_kernel_driver:-:*:*:*:*:*:*:*
cpe:2.3:a:arm:valhall_gpu_kernel_driver:-:*:*:*:*:*:*:*
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 21 Oct 2025 19:30:00 +0000


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-10-21T23:25:46.291Z

Reserved: 2021-03-18T00:00:00.000Z

Link: CVE-2021-28663

cve-icon Vulnrichment

Updated: 2024-08-03T21:47:33.122Z

cve-icon NVD

Status : Analyzed

Published: 2021-05-10T15:15:07.557

Modified: 2025-11-03T15:16:38.717

Link: CVE-2021-28663

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.