Use-after-free in ARM products - CVE-2022-36449
Published: April 4, 2023
Vulnerability identifier: #VU74383
CSH Severity: Low
CVSS v4: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2022-36449
CWE-ID: CWE-416
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a local application to escalate privileges on the system.
The vulnerability exists due to a use-after-free error. A local application can execute arbitrary code with elevated privileges.
Affected software
Midgard GPU Kernel Driver
Bifrost GPU Kernel Driver
Valhall GPU Kernel Driver
Google Android
Samsung Mobile Firmware
Bifrost GPU Kernel Driver
Valhall GPU Kernel Driver
Google Android
Samsung Mobile Firmware
How to mitigate CVE-2022-36449
Install updates from vendor's website.
Bifrost GPU Kernel Driver - addressed in versions r38p1, r40p0
Valhall GPU Kernel Driver - addressed in versions r38p1, r40p0
Google Android - addressed in versions 11 2023-04-05, 12L 2023-04-05, 12 2023-04-05, 13 2023-04-05
Samsung Mobile Firmware - update to SMR-MAY-2023
Valhall GPU Kernel Driver - addressed in versions r38p1, r40p0
Google Android - addressed in versions 11 2023-04-05, 12L 2023-04-05, 12 2023-04-05, 13 2023-04-05
Samsung Mobile Firmware - update to SMR-MAY-2023
External References
- https://developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20Vulnerabilities
- http://packetstormsecurity.com/files/168431/Arm-Mali-Released-Buffer-Use-After-Free.html
- http://packetstormsecurity.com/files/168434/Arm-Mali-CSF-Missing-Buffer-Size-Check.html
- http://packetstormsecurity.com/files/168432/Arm-Mali-Physical-Address-Exposure.html
- http://packetstormsecurity.com/files/168433/Arm-Mali-Race-Condition.html