Vulnerability Description
An Arm product family through 2022-06-29 has a TOCTOU Race Condition that allows non-privileged user to make improper GPU processing operations to gain access to already freed memory.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Arm | Utgard Gpu Kernel Driver | r11p0 |
Related Weaknesses (CWE)
References
- https://developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20VulnerabVendor Advisory
- https://developer.arm.com/support/arm-security-updatesVendor Advisory
- https://developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20VulnerabVendor Advisory
- https://developer.arm.com/support/arm-security-updatesVendor Advisory
FAQ
What is CVE-2022-34830?
CVE-2022-34830 is a vulnerability with a CVSS score of 7.5 (HIGH). An Arm product family through 2022-06-29 has a TOCTOU Race Condition that allows non-privileged user to make improper GPU processing operations to gain access to already freed memory.
How severe is CVE-2022-34830?
CVE-2022-34830 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-34830?
Check the references section above for vendor advisories and patch information. Affected products include: Arm Utgard Gpu Kernel Driver.