Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Alerts

Arm Discloses Critical Flaws in Mali GPUs

February 3, 2025
Reading Time: 2 mins read
in Alerts
Lumma Stealer Exploits GitHub Repositories

Arm, a leader in semiconductor technology, has recently disclosed a series of critical vulnerabilities affecting its Mali GPU kernel drivers and firmware. These flaws impact various GPU architectures, including Bifrost, Valhall, and the Arm 5th Gen GPU Architecture, posing significant security risks to users of devices powered by these components. Among the disclosed issues, CVE-2024-4610 stands out as it has already been exploited in real-world attacks, highlighting the urgency for affected users to update their systems immediately. This vulnerability allows attackers to access freed memory, potentially enabling further exploitation or system compromise.

The vulnerabilities span a range of issues, including improper GPU memory processing, which can lead to system crashes, privilege escalation, or information leakage.

Specifically, CVE-2024-4610 affects versions r34p0 to r40p0 of the Bifrost and Valhall GPU kernel drivers, allowing local, non-privileged attackers to perform unauthorized memory operations. Arm has released updates addressing this flaw and others, urging all impacted users to upgrade their drivers to versions r41p0 and newer. These updates are essential for minimizing exposure to the vulnerabilities and preventing exploitation.

In addition to CVE-2024-4610, Arm disclosed several other security flaws that affect both Mali GPU kernel drivers and firmware components. These flaws range in severity and include the potential for full system memory access, as seen with CVE-2024-0153. Attackers exploiting these vulnerabilities could manipulate GPU processing operations or even trigger system crashes, especially when vulnerabilities are exploited via local user processes or web-based technologies like WebGL or WebGPU. For users and developers, upgrading to the latest driver and firmware versions is critical to mitigating these risks.

To address the vulnerabilities, Arm has provided clear guidance on which versions of drivers and firmware need to be updated. For Valhall and Arm 5th Gen GPU drivers, users should upgrade to versions r49p2, r52p0, or later, while Bifrost drivers should be updated to version r49p1 or newer. Firmware updates are also necessary, with the recommended version being r47p0 or later. Arm’s proactive disclosure underscores the importance of maintaining up-to-date software and hardware, especially for systems using Mali GPUs in consumer devices like smartphones and tablets. Users, developers, and device manufacturers must apply these patches promptly to protect against potential exploitation.

Reference:
  • Arm Discloses Critical Vulnerabilities in Mali GPU Drivers with Real-World Exploits
Tags: Cyber AlertsCyber Alerts 2025CyberattackCybersecurityFebruary 2025
ADVERTISEMENT

Related Posts

Fake Invoices Deliver Sorillus RAT In Europe

Fake Minecraft Mods On GitHub Spread Malware

June 19, 2025
Fake Invoices Deliver Sorillus RAT In Europe

Russian Vishing Scam Bypasses Google 2FA

June 19, 2025
Fake Invoices Deliver Sorillus RAT In Europe

Fake Invoices Deliver Sorillus RAT In Europe

June 19, 2025
New Linux Flaws Allow Easy Root Access

New Linux Flaws Allow Easy Root Access

June 18, 2025
New Linux Flaws Allow Easy Root Access

Langflow Flaw Delivers Flodrix DDoS Botnet

June 18, 2025
New Linux Flaws Allow Easy Root Access

Google Fixes GerriScary Supply Chain Flaw

June 18, 2025

Latest Alerts

Fake Minecraft Mods On GitHub Spread Malware

Fake Invoices Deliver Sorillus RAT In Europe

Russian Vishing Scam Bypasses Google 2FA

New Linux Flaws Allow Easy Root Access

Google Fixes GerriScary Supply Chain Flaw

Langflow Flaw Delivers Flodrix DDoS Botnet

Subscribe to our newsletter

    Latest Incidents

    Hacker Mints $27M From Meta Pool Gets 132K

    UBS and Pictet Hit By Vendor Data Breach

    Cyberattack Disrupts Paris Air Show Website

    Scania Insurance Data Stolen In Partner Hack

    Pro Israel Group Claims $81M Nobitex Hack

    Hacker Sells Data Of 1M Cock.li Users

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial