High severity8.8CISA KEVNVD Advisory· Published May 10, 2021· Updated Jun 17, 2026
CVE-2021-28664
CVE-2021-28664
Description
The Arm Mali GPU kernel driver allows privilege escalation or a denial of service (memory corruption) because an unprivileged user can achieve read/write access to read-only pages. This affects Bifrost r0p0 through r29p0 before r30p0, Valhall r19p0 through r29p0 before r30p0, and Midgard r8p0 through r30p0 before r31p0.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- cpe:2.3:a:arm:bifrost_gpu_kernel_driver:*:*:*:*:*:*:*:*Range: >=r0p0,<r29p0
- cpe:2.3:a:arm:midgard_gpu_kernel_driver:*:*:*:*:*:*:*:*Range: >=r8p0,<r31p0
- cpe:2.3:a:arm:valhall_gpu_kernel_driver:*:*:*:*:*:*:*:*Range: >=r19p0,<r29p0
- Arm/Arm Mali GPU kernel driverdescription
Patches
Vulnerability mechanics
References
4- developer.arm.com/Arm%20Security%20Center/Mali%20GPU%20Driver%20VulnerabilitiesnvdVendor Advisory
- developer.arm.com/support/arm-security-updatesnvdVendor Advisory
- developer.arm.com/support/arm-security-updates/mali-gpu-kernel-drivernvdVendor Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
0No linked articles in our index yet.