Skip to content
Noroxi

Arm records

165 published records for vendor arm.

Researcher profile

Entered KEV
8 · 4.8%
Weaponized
8 · 4.8%
Pre-auth RCE
5
With a fix record
57.6%
Median publish → KEV
167 days

Bug bounty scope

The product’s vendor appears in a public program. Matched by name; verify the scope text in the program.

All records

165 records
  • CVE-2022-38181
    69This week

    The Arm Mali GPU kernel driver allows unprivileged users to access freed memory because GPU memory operations are mishandled.

    HighCVSS 8.8KEVWeaponizedEPSS 14%

    arm · bifrost gpu kernel driverOct 25, 2022

  • CVE-2021-28663
    69This week

    The Arm Mali GPU kernel driver allows privilege escalation or information disclosure because GPU memory operations are mishandled, leading t

    HighCVSS 8.8KEVWeaponizedEPSS 12%

    arm · bifrost gpu kernel driverMay 10, 2021

  • CVE-2021-28664
    67This week

    The Arm Mali GPU kernel driver allows privilege escalation or a denial of service (memory corruption) because an unprivileged user can achie

    HighCVSS 8.8KEVWeaponizedEPSS 5%

    arm · bifrost gpu kernel driverMay 10, 2021

  • CVE-2021-29256
    66This week

    .

    HighCVSS 8.8KEVWeaponizedEPSS 3%

    arm · bifrost gpu kernel driverMay 24, 2021

  • CVE-2022-22706
    61This week

    Arm Mali GPU Kernel Driver allows a non-privileged user to achieve write access to read-only memory pages.

    HighCVSS 7.8KEVWeaponizedEPSS 1%

    arm · bifrost gpu kernel driverMar 3, 2022

  • CVE-2024-4610
    61This week

    Mali GPU Kernel Driver allows improper GPU memory processing operations

    HighCVSS 7.8KEVWeaponizedEPSS 1%

    arm · bifrost gpu kernel driverJun 7, 2024

  • Mali GPU Kernel Driver Allows Improper GPU Memory Processing Operations

    MediumCVSS 5.5KEVWeaponizedEPSS 1%

    arm · 5th gen gpu architecture kernel driverOct 1, 2023

  • Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an at

    MediumCVSS 5.6Proof of conceptEPSS 94%

    intel · atom cJan 4, 2018

  • Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information

    MediumCVSS 5.6Proof of conceptEPSS 84%

    intel · atom cJan 4, 2018

  • Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information

    MediumCVSS 5.6Proof of conceptEPSS 74%

    intel · atom cJan 4, 2018

  • Memory leak vulnerability in Mali GPU Kernel Driver in Midgard GPU Kernel Driver all versions from r6p0 - r32p0, Bifrost GPU Kernel Driver a

    LowCVSS 3.3KEVWeaponizedEPSS 1%

    arm · 5th gen gpu architecture kernel driverApr 6, 2023

  • Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior mem

    MediumCVSS 5.5Proof of conceptEPSS 61%

    intel · atom cMay 22, 2018

  • ARM mbed TLS before 1.3.22, before 2.1.10, and before 2.7.0, when the truncated HMAC extension and CBC are used, allows remote attackers to

    CriticalCVSS 9.8No exploitEPSS 5%

    arm · mbed tlsFeb 13, 2018

  • ARM mbed TLS before 1.3.22, before 2.1.10, and before 2.7.0 allows remote attackers to execute arbitrary code or cause a denial of service (

    CriticalCVSS 9.8No exploitEPSS 3%

    arm · mbed tlsFeb 13, 2018

  • In ARM mbed TLS before 2.7.0, there is a bounds-check bypass through an integer overflow in PSK identity parsing in the ssl_parse_client_psk

    CriticalCVSS 9.8No exploitEPSS 3%

    arm · mbed tlsFeb 14, 2018

  • Mbed TLS before 3.0.1 has a double free in certain out-of-memory conditions, as demonstrated by an mbedtls_ssl_set_session() failure.

    CriticalCVSS 9.8No exploitEPSS 3%

    arm · mbed tlsDec 20, 2021

  • Mbed TLS before 3.6.4 allows a use-after-free in certain situations of applications that are developed in accordance with the documentation.

    CriticalCVSS 9.8Proof of conceptEPSS 2%

    arm · mbed tlsJul 20, 2025

  • ARM mbed Integer Overflow or Wraparound

    CriticalCVSS 9.8No exploitEPSS 2%

    arm · mbedMay 3, 2022

  • ARM mbed-ualloc memory library Integer Overflow or Wraparound

    CriticalCVSS 9.8No exploitEPSS 2%

    arm · mbed uallocMay 3, 2022

  • Arm Mali GPU Kernel Driver (Midgard r4p0 through r31p0, Bifrost r0p0 through r36p0 before r37p0, and Valhall r19p0 through r36p0 before r37p

    CriticalCVSS 9.8No exploitEPSS 1%

    arm · bifrost gpu kernel driverMay 18, 2022

  • Arm Mali GPU Kernel Driver allows improper GPU operations in Valhall r29p0 through r36p0 before r37p0 to reach a use-after-free situation.

    CriticalCVSS 9.8No exploitEPSS 1%

    arm · valhall gpu kernel driverMay 18, 2022

  • Arm Mali GPU Kernel Driver has a use-after-free: Midgard r28p0 through r29p0 before r30p0, Bifrost r17p0 through r23p0 before r24p0, and Val

    CriticalCVSS 9.8No exploitEPSS 1%

    arm · bifrost gpu kernel driverMay 18, 2022

  • ARM astcenc 3.2.0 is vulnerable to Buffer Overflow.

    CriticalCVSS 9.8No exploitEPSS 1%

    arm · adaptive scalable texture compression encoderFeb 28, 2022

  • An issue was discovered in Mbed TLS before 2.28.2 and 3.x before 3.3.0.

    CriticalCVSS 9.8No exploitEPSS 1%

    arm · mbed tlsDec 15, 2022

  • ARM CMSIS RTOS2 Integer Overflow or Wraparound

    CriticalCVSS 9.8No exploitEPSS 1%

    arm · cmsis-rtosMay 3, 2022