CVE-2022-38181Patch(arm / bifrost_gpu_kernel_driver)

LOWCVSS 8.8 · HIGHCISA KEV

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch arm bifrost_gpu_kernel_driver systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

The Arm Mali GPU kernel driver allows unprivileged users to access freed memory because GPU memory operations are mishandled. This affects Bifrost r0p0 through r38p1, and r39p0; Valhall r19p0 through r38p1, and r39p0; and Midgard r4p0 through r32p0.

0.5/ 10 priority

Sources & remediation

Listed in the CISA Known Exploited Vulnerabilities catalog. Federal remediation due date: 2023-04-20. Apply updates per vendor instructions.

Weakness type (CWE)
CWE-416

Priority

LOW

Exploitation

ACTIVE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • bifrost_gpu_kernel_driver
  • midgard_gpu_kernel_driver
  • valhall_gpu_kernel_driver

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • General: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-08-24); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
bifrost_gpu_kernel_drivermidgard_gpu_kernel_drivervalhall_gpu_kernel_driver

1 version affected across 3 products

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-08-24: 1Mentions · 2026-08-25: 1Patch / Workaround · 2026-08-24: 1Patch / Workaround · 2026-08-25: 108-2408-25
Signal classification2 categories
Patch
150.0%
General
150.0%
Referenced assets1 URL
By indicator
Classification over time
DateTotalLabels
2026-08-241
Patch1
2026-08-251
General1
Full discourse2 posts
  • Ilya Kabanov@dr_kabanov
    General

    GLM-5.3 rooted a Fire tablet No zero-days needed, just a known CVE-2022-38181, fixed by Arm, cataloged by CISA in 2023, and patched by Amazon in 2024. The device itself wasn't not patched and after a hint about the CVE from Kimi K3, GLM finished the work. The story itself is just fun to read, link below. My thoughts: 1️⃣ The current gen of Kimi and GLM is already usable for finding and chaining vulnerabilities. My guess is that they're probably ~6m behind the closed frontier models and impose significantly less restrictions than them. 2️⃣ I wrote before, that I feel very uncomfortable when someone else decides what I can and can't do within legal boundaries. In this case, Claude and GPT refused to handle the actually legitimate request. The DMCA exemptions are valid through October 2027. The over firing Fable 5 and Opus 5 safeguards are making the models unusable. I'm not talking about any cyber activities, Claude refuses even to read papers about security. OpenAI verification that unlocks Daybreak Blue actually makes GPT-5.6-Sol more usable for my task! 3️⃣ I'm not sure if the open-weight models survive in mid-term. If the regulations start requiring all capable AI models to go through pre-launch testing and meet the same "centralized" safeguards that Dario is pushing for, there's just no space for the open-weight models at all. https://ericpardee.github.io/fire-hd-ownership/

    Post summary

    The post recounts a story where GLM‑5.3 successfully rooted an Amazon Fire tablet using the known CVE‑2022‑38181, noting that a patch existed but the device remained unpatched; no detailed exploit, PoC, or evidence of widespread active exploitation is provided.

    0000094
    31 followersView on X
  • Edu@eddzsh
    Patch

    @steipete Amazon kept bricking the tablet, so the fix was four models and five months on CVE-2022-38181. The prompt kiddie still pays rent to the meter.

    Post summary

    Amazon addressed CVE‑2022‑38181 after five months, patching four tablet models to stop bricking, but the post lacks details on exploit or technical vulnerability.

    00000455
    21 followersView on X
CPE platform detail5 entries

5 of 5 entries

PartVendorProductVersionTarget SWTarget HW
Apparmbifrost_gpu_kernel_driver---
Apparmbifrost_gpu_kernel_driverr39p0--
Apparmmidgard_gpu_kernel_driver---
Apparmvalhall_gpu_kernel_driver---
Apparmvalhall_gpu_kernel_driverr39p0--

Explore more