logo

Google & Arm - Raising The Bar on GPU Security

ID: 6eba32b8-0d45-5f74-924e-15a105401b07

STIX ID: report--6eba32b8-0d45-5f74-924e-15a105401b07

Feed Name: Google Online Security Blog

Threat Score
70/100

Date Published: 2024-09-24

Date Updated: 2026-04-27

Author: Edward Fernandez

...
...

The Android Red Team and Arm collaborated to audit and harden the Arm Mali GPU stack, discovering and responsibly disclosing multiple memory-safety vulnerabilities—two Pixel-specific kernel integer overflow issues (CVE-2023-48409, CVE-2023-48421) and a complex GPU firmware buffer overflow (CVE-2024-0153)—that could enable firmware code execution and kernel privilege escalation; fixes and updated Security Test Suite checks were released to mitigate risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.