
Arm Releases Patch for Exploited Mali GPU Vulnerabilities
Arm has issued a security advisory warning of an actively exploited vulnerability in the widely-used Mali GPU drivers. The flaw, tracked as CVE-2023-4211, allows improper access to freed memory, potentially compromising sensitive data. Arm has evidence of limited, targeted exploitation and has released a patch for some affected GPU architectures. However, older device models using the Midgard series are unlikely to receive a patch. Arm also disclosed two other vulnerabilities, CVE-2023-33200 and CVE-2023-34970, impacting Bifrost, Valhall, and Arm's 5th Gen GPU architecture. All three vulnerabilities require local access on the device and can be exploited by tricking users into downloading applications from unofficial sources.
