SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-12285

MEDIUM · CVSS 4 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in Arm's GPU kernel drivers allows local non-privileged user processes to access freed memory, potentially leading to unauthorized memory manipulation or system instability. This issue affects various versions of the Bifrost, Valhall, and 5th Gen GPU Architecture Kernel Drivers. Organizations utilizing these drivers should prioritize patching to mitigate potential exploitation risks.

CVE
CVE-2026-12285
Severity
MEDIUM
CVSS
4
EPSS
0.11%

Original NVD Description

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU memory processing operations to access already freed memory. This issue affects Bifrost GPU Kernel Driver: from r41p0 through r49p5, from r50p0 through r51p0, from r54p1 through r54p2; Valhall GPU Kernel Driver: from r41p0 through r49p5, from r50p0 through r54p3, r55p0; Arm 5th Gen GPU Architecture Kernel Driver: from r41p0 through r49p5, from r50p0 through r54p3, r55p0.