Apple, AMD, Qualcomm GPU security hole lets miscreants snoop on AI training and chats
ID: 266a91b1-425c-5d29-bbc7-a27f464ea52a
STIX ID: report--266a91b1-425c-5d29-bbc7-a27f464ea52a
Feed Name: The Register (Security)
Threat Score
LeftoverLocals (CVE-2023-4969) is a GPU driver design flaw affecting multiple vendors (Apple, AMD, Qualcomm, and some Imagination products) that allows attackers with access to a shared or compromised GPU to read leftover local GPU memory and exfiltrate sensitive data such as LLM inputs, outputs, and weights; proof-of-concept code has been published and vendors are rolling out mitigations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
