🔐 CVE Alert

CVE-2023-4211

MEDIUM 5.5 ⚠️ CISA KEV

Mali GPU Kernel Driver Allows Improper GPU Memory Processing Operations

CVSS Score
5.5
EPSS Score
0.0%
EPSS Percentile
0th

A local non-privileged user can make improper GPU memory processing operations to gain access to already freed memory.

CWE CWE-416
Vendor arm ltd
Product midgard gpu kernel driver
Published Oct 1, 2023
Last Updated Oct 21, 2025
⚠️ Actively Exploited — Act Now

Get instant alerts for arm ltd midgard gpu kernel driver

This vulnerability is actively exploited in the wild. Set up free real-time alerts so you're first to know about threats like CVE-2023-4211.

Get Free Alerts → Free · No credit card · 60 sec setup

Affected Versions

Arm Ltd / Midgard GPU Kernel Driver
r12p0 ≤ r32p0
Arm Ltd / Bifrost GPU Kernel Driver
r0p0 ≤ r42p0
Arm Ltd / Valhall GPU Kernel Driver
r19p0 ≤ r42p0
Arm Ltd / Arm 5th Gen GPU Architecture Kernel Driver
r41p0 ≤ r42p0

References

NVD ↗ CVE.org ↗ EPSS Data ↗
developer.arm.com: https://developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20Vulnerabilities cisa.gov: https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2023-4211

Credits

Maddie Stone, Google Threat Analysis Group Jann Horn, Google Project Zero