logo

Apple, AMD, Qualcomm GPU security hole lets miscreants snoop on AI training and chats

ID: 266a91b1-425c-5d29-bbc7-a27f464ea52a

STIX ID: report--266a91b1-425c-5d29-bbc7-a27f464ea52a

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2024-01-17

Date Updated: 2026-04-26

Author: Jessica Lyons Hardcastle

...
...

LeftoverLocals (CVE-2023-4969) is a GPU driver design flaw affecting multiple vendors (Apple, AMD, Qualcomm, and some Imagination products) that allows attackers with access to a shared or compromised GPU to read leftover local GPU memory and exfiltrate sensitive data such as LLM inputs, outputs, and weights; proof-of-concept code has been published and vendors are rolling out mitigations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.