« Volver al listado

CVE-2026-9040

Estado: Pendiente de análisisAlta (7.7)—

A race condition vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform improper GPU memory processing operations to cause a denial of service or disclose sensitive information.

This issue affects Bifrost GPU Kernel Driver: from r12p0 through r49p5, from r50p0 through r51p0, from r54p1 through r54p2; Valhall GPU Kernel Driver: from r19p0 through r49p5, from r50p0 through r54p3, r55p0; Arm 5th Gen GPU Architecture Kernel Driver: from r41p0 through r49p5, from r50p0 through r54p3, r55p0.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

🎯 Técnicas ATT&CK

Cómo se explota esta vulnerabilidad y qué consigue el atacante, en el lenguaje de MITRE ATT&CK.

Condición de carrera local (AV:L, PR:N, UI:N) en driver de GPU permite escalada de privilegios (I:N descarta modificación permanente, pero A:H y C:H indican DoS e info disclosure). T1499.004 (resource exhaustion) por negación de servicio; T1005 por lectura de memoria sensible.

Inferido por nuestro agente de análisis a partir de la descripción oficial, el vector CVSS y la CWE, y comprobado por un supervisor. Puede contener errores.

🛡️ Mitigaciones ATT&CK que cubren estas técnicas

Tecnologías afectadas (3)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2026-9040",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2026-9040",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "no"
            },
            {
              "technicalImpact": "partial"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2026-09-10T17:55:31.134691Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 7.7,
          "attackVector": "LOCAL",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.2,
        "exploitabilityScore": 2.5
      }
    ]
  },
  "affected": [
    {
      "source": "arm-security@arm.com",
      "affectedData": [
        {
          "vendor": "Arm Ltd",
          "product": "Bifrost GPU Kernel Driver",
          "versions": [
            {
              "status": "affected",
              "version": "r12p0",
              "versionType": "patch",
              "lessThanOrEqual": "r49p5"
            },
            {
              "status": "affected",
              "version": "r50p0",
              "versionType": "patch",
              "lessThanOrEqual": "r51p0"
            },
            {
              "status": "affected",
              "version": "r54p1",
              "versionType": "patch",
              "lessThanOrEqual": "r54p2"
            }
          ],
          "defaultStatus": "unaffected"
        },
        {
          "vendor": "Arm Ltd",
          "product": "Valhall GPU Kernel Driver",
          "versions": [
            {
              "status": "affected",
              "version": "r19p0",
              "versionType": "patch",
              "lessThanOrEqual": "r49p5"
            },
            {
              "status": "affected",
              "version": "r50p0",
              "versionType": "patch",
              "lessThanOrEqual": "r54p3"
            },
            {
              "status": "affected",
              "version": "r55p0",
              "versionType": "patch"
            },
            {
              "status": "unaffected",
              "version": "r56p0",
              "versionType": "patch"
            }
          ],
          "defaultStatus": "unaffected"
        },
        {
          "vendor": "Arm Ltd",
          "product": "Arm 5th Gen GPU Architecture Kernel Driver",
          "versions": [
            {
              "status": "affected",
              "version": "r41p0",
              "versionType": "patch",
              "lessThanOrEqual": "r49p5"
            },
            {
              "status": "affected",
              "version": "r50p0",
              "versionType": "patch",
              "lessThanOrEqual": "r54p3"
            },
            {
              "status": "affected",
              "version": "r55p0",
              "versionType": "patch"
            },
            {
              "status": "unaffected",
              "version": "r56p0",
              "versionType": "patch"
            }
          ],
          "defaultStatus": "unaffected"
        }
      ]
    }
  ],
  "published": "2026-09-08T15:18:56.467",
  "references": [
    {
      "url": "https://support.arm.com/documentation/111552/1-0/?lang=en",
      "source": "arm-security@arm.com"
    }
  ],
  "vulnStatus": "Awaiting Analysis",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "arm-security@arm.com",
      "description": [
        {
          "lang": "en",
          "value": "CWE-362"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "A race condition vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform improper GPU memory processing operations to cause a denial of service or disclose sensitive information.\n\n\n\nThis issue affects Bifrost GPU Kernel Driver: from r12p0 through r49p5, from r50p0 through r51p0, from r54p1 through r54p2; Valhall GPU Kernel Driver: from r19p0 through r49p5, from r50p0 through r54p3, r55p0; Arm 5th Gen GPU Architecture Kernel Driver: from r41p0 through r49p5, from r50p0 through r54p3, r55p0."
    }
  ],
  "lastModified": "2026-09-10T18:18:16.697",
  "sourceIdentifier": "arm-security@arm.com"
}