SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-12387

MEDIUM · CVSS 5.1 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in the Arm GPU Kernel Drivers allows local non-privileged user processes to access freed memory, potentially leading to unauthorized memory manipulation or system instability. Affected products include various versions of the Bifrost, Valhall, and Arm 5th Gen GPU Kernel Drivers. Organizations utilizing these drivers should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-12387
Severity
MEDIUM
CVSS
5.1
EPSS
0.11%

Original NVD Description

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU memory processing operations to access already freed memory. This issue affects Bifrost GPU Kernel Driver: from r41p0 through r49p5, from r50p0 through r51p0, from r54p1 through r54p2; Valhall GPU Kernel Driver: from r41p0 through r49p5, from r50p0 through r54p3, r55p0; Arm 5th Gen GPU Architecture Kernel Driver: from r41p0 through r49p5, from r50p0 through r54p3, r55p0.