SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-9034

HIGH · CVSS 7.8 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in the Arm GPU Userspace Drivers allows non-privileged user processes to access freed memory during GPU operations, potentially leading to information disclosure or arbitrary code execution. Affected products include various versions of the Bifrost, Valhall, and Arm 5th Gen GPU Drivers. Organizations utilizing these drivers should prioritize remediation to mitigate potential exploitation risks.

CVE
CVE-2026-9034
Severity
HIGH
CVSS
7.8
EPSS
0.11%

Original NVD Description

Use After Free vulnerability in Arm Ltd Bifrost GPU Userspace Driver, Arm Ltd Valhall GPU Userspace Driver, Arm Ltd Arm 5th Gen GPU Architecture Userspace Driver allows a non-privileged user process to perform valid GPU processing operations, including via WebGL or WebGPU, to access already freed memory. This issue affects Bifrost GPU Userspace Driver: from r42p0 through r49p5, from r50p0 through r51p0, from r54p1 through r54p3; Valhall GPU Userspace Driver: from r42p0 through r49p5, from r50p0 through r54p3, r55p0; Arm 5th Gen GPU Architecture Userspace Driver: from r42p0 through r49p5, from r50p0 through r54p3, r55p0.