Saturday, May 16, 2026
City and Coffee
  • Home
  • World
    Iran war live: Lebanon, Israel extend truce; Tehran ready for more US talks | US-Israel war on Iran News

    Iran war live: Lebanon, Israel extend truce; Tehran ready for more US talks | US-Israel war on Iran News

    Philippines vows to hand fugitive senator to ICC following shootout | Politics News

    Philippines vows to hand fugitive senator to ICC following shootout | Politics News

    Eurovision braces for new protests over Israel’s participation | Protests

    Eurovision braces for new protests over Israel’s participation | Protests

    Iran still waiting for US visas less than a month before World Cup | World Cup 2026 News

    Iran still waiting for US visas less than a month before World Cup | World Cup 2026 News

    Iran war live: Tehran slams ‘collusion’ as Netanyahu ‘secretly’ visits UAE | US-Israel war on Iran News

    Iran war live: Tehran slams ‘collusion’ as Netanyahu ‘secretly’ visits UAE | US-Israel war on Iran News

  • US

    Catholic Clergy Can Minister Within Illinois ICE Facility After Legal Agreement

    Omaha Bar Is Not a Barbershop, State Barber Board Tells a Bar Named ‘Barber Shop’

    Why Trump’s Reflecting Pool Repairs Are in Trouble

    Why Trump’s Reflecting Pool Repairs Are in Trouble

    U.S. Abruptly Cancels Deployment of 4,000 Troops to Poland

    Duffy’s ‘Great American Road Trip’ Prompts Ethical Concerns

  • Europe
    Switzerland finally to open secret files on Nazis’ Auschwitz ‘Angel of Death’

    Switzerland finally to open secret files on Nazis’ Auschwitz ‘Angel of Death’

    Prisoner swap goes ahead as Kyiv mourns 24 killed in Russian strike on flats

    Prisoner swap goes ahead as Kyiv mourns 24 killed in Russian strike on flats

    Five Italians die during cave dive in Maldives

    Five Italians die during cave dive in Maldives

    Rescuers pull dead from rubble of Kyiv flats after massive Russian strikes

    Rescuers pull dead from rubble of Kyiv flats after massive Russian strikes

    Passengers allowed to leave norovirus-hit cruise ship

    Passengers allowed to leave norovirus-hit cruise ship

  • MENA
    Israel and Lebanon agree to extend ceasefire, US state department says

    Israel and Lebanon agree to extend ceasefire, US state department says

    BBC on the ground during march through Jerusalem’s Old City

    BBC on the ground during march through Jerusalem’s Old City

    'Floating armoury' ship reportedly seized by Iran

    'Floating armoury' ship reportedly seized by Iran

    Netanyahu says he ‘secretly visited’ UAE during war with Iran

    Netanyahu says he ‘secretly visited’ UAE during war with Iran

    Hezbollah support endures in south Lebanon as ceasefire fails to stop war with Israel

    Hezbollah support endures in south Lebanon as ceasefire fails to stop war with Israel

  • APAC
    US and China conclude ‘very successful’ talks but few deals confirmed

    US and China conclude ‘very successful’ talks but few deals confirmed

    Beijing trip ends with Zhongnanhai tour

    Beijing trip ends with Zhongnanhai tour

    Giant new dinosaur identified from fossils in Thailand

    Giant new dinosaur identified from fossils in Thailand

    Gunfire chaos as Philippine senator resists ICC arrest: What we know so far

    Gunfire chaos as Philippine senator resists ICC arrest: What we know so far

    Lockdown in Philippine Senate after gunshots fired

    Lockdown in Philippine Senate after gunshots fired

  • Tech
    The Best Outdoor Deals From the REI Anniversary Sale 2026

    The Best Outdoor Deals From the REI Anniversary Sale 2026

    The 5 Best Outdoor Griddles and Flat Top Grills (2026)

    The 5 Best Outdoor Griddles and Flat Top Grills (2026)

    We Now Know How Many People the CDC Is Monitoring for Hantavirus

    We Now Know How Many People the CDC Is Monitoring for Hantavirus

    Klipsch the Fives II Speakers Review for Music, Movies, More (2026)

    Klipsch the Fives II Speakers Review for Music, Movies, More (2026)

    Everyone at the Musk v. Altman Trial Is Using Fancy Butt Cushions

    Everyone at the Musk v. Altman Trial Is Using Fancy Butt Cushions

  • Entertainment
    ‘Gentle Monster’ Review: A Harrowing End-Of-Family Drama

    ‘Gentle Monster’ Review: A Harrowing End-Of-Family Drama

    Jordana Brewster Disses Fast and Furious Green Screens, Mia Losing Agency

    Jordana Brewster Disses Fast and Furious Green Screens, Mia Losing Agency

    Byron Allen on His Fire-Sale BuzzFeed Deal and Taking Over Colbert’s CBS Time Slot

    Byron Allen on His Fire-Sale BuzzFeed Deal and Taking Over Colbert’s CBS Time Slot

    Aina Clotet on Broaching Untold Women Stories With Cannes Title ‘Viva’

    Aina Clotet on Broaching Untold Women Stories With Cannes Title ‘Viva’

    Elon Musk’s Attacks Are Silly and Wildly Inaccurate

    Elon Musk’s Attacks Are Silly and Wildly Inaccurate

  • Travel
    This Seaside Town Is a Hidden Gem in California

    This Seaside Town Is a Hidden Gem in California

    Wimberley, Texas, Travel Guide

    Wimberley, Texas, Travel Guide

    15 Best Places to Visit in Georgia

    15 Best Places to Visit in Georgia

    Essential Guide to Beaufort, South Carolina

    Essential Guide to Beaufort, South Carolina

    REI Has Spring New Arrivals on Sale From $13

    REI Has Spring New Arrivals on Sale From $13

  • Lifestyle
    Pratt Institute Fall 2026 Ready-to-Wear Collection

    Pratt Institute Fall 2026 Ready-to-Wear Collection

    LVMH to Sell Marc Jacobs to WHP Global

    LVMH to Sell Marc Jacobs to WHP Global

    Who Should Be the Next “Sheep Detective”?

    Who Should Be the Next “Sheep Detective”?

    Christian Dior Resort 2027

    Christian Dior Resort 2027

    Karla Spetic Australia Resort 2027 Collection

    Karla Spetic Australia Resort 2027 Collection

  • Sports
    World Cup 2026: Haiti squad includes Wilson Isidor and Jean-Ricner Bellegarde

    World Cup 2026: Haiti squad includes Wilson Isidor and Jean-Ricner Bellegarde

    NFL 2026 key dates & fixtures: Christmas Day, play-offs & Super Bowl 61 explained

    NFL 2026 key dates & fixtures: Christmas Day, play-offs & Super Bowl 61 explained

    Man City’s Khadija Shaw leads WSL player of the season shortlist

    Man City’s Khadija Shaw leads WSL player of the season shortlist

    Italian Open match delayed by cup final fireworks

    Italian Open match delayed by cup final fireworks

    Rory McIlroy ‘totally fine’ for US PGA Championship after toe issue

    Rory McIlroy ‘totally fine’ for US PGA Championship after toe issue

  • Blogs
No Result
View All Result
City and Coffee
No Result
View All Result
Home Tech

Google Researchers Found Nearly a Dozen Flaws in Popular Qualcomm Software for Mobile GPUs

content@helloomylife.com by content@helloomylife.com
August 9, 2024
in Tech
0
Google Researchers Found Nearly a Dozen Flaws in Popular Qualcomm Software for Mobile GPUs
0
SHARES
48
VIEWS
Share on FacebookShare on Twitter


Demand for graphics processing items or GPUs has exploded in recent years as video rendering and synthetic intelligence programs have expanded the necessity for processing energy. And whereas many of the most seen shortages (and hovering inventory costs) relate to top-tier PC and server chips, cellular graphics processors are the model that everybody with a smartphone is utilizing on a regular basis. So vulnerabilities in these chips or how they’re carried out can have real-world penalties. That is precisely why Google’s Android vulnerability searching purple workforce set its sights on open-source software program from the chip big Qualcomm that is broadly used to implement cellular GPUs.

On the Defcon safety convention in Las Vegas on Friday, three Google researchers introduced greater than 9 vulnerabilities—now patched—that they found in Qualcomm’s Adreno GPU, a set of software program used to coordinate between GPUs and an working system like Android on Qualcomm-powered telephones. Such “drivers” are essential to how any pc is designed and have deep privileges within the kernel of an working system to coordinate between {hardware} peripherals and software program. Attackers might exploit the failings the researchers discovered to take full management of a tool.

For years, engineers and attackers alike have been most centered on potential vulnerabilities in a pc’s central processing unit (CPU) and have optimized for effectivity on GPUs, leaning on them for uncooked processing energy. However as GPUs develop into extra central to every thing a tool does on a regular basis, hackers on each ends of the spectrum are how GPU infrastructure may very well be exploited.

“We’re a small workforce in comparison with the large Android ecosystem—the scope is just too huge for us to cowl every thing, so we have now to determine what may have essentially the most affect,” says Xuan Xing, supervisor of Google’s Android Crimson Staff. “So why did we give attention to a GPU driver for this case? It is as a result of there’s no permission required for untrusted apps to entry GPU drivers. This is essential, and I feel will entice numerous attackers’ consideration.”

Xing is referring to the truth that functions on Android telephones can discuss to the Adreno GPU driver instantly with “no sandboxing, no further permission checks,” as he places it. This does not in itself give functions the flexibility to go rogue, however it does make GPU drivers a bridge between the common components of the working system (the place knowledge and entry are rigorously managed), and the system kernel, which has full management over your complete system together with its reminiscence. “GPU drivers have all types of highly effective capabilities,” Xing says. “That mapping in reminiscence is a robust primitive attackers need to have.”

The researchers say the vulnerabilities they uncovered are all flaws that come out of the intricacies and sophisticated interconnections that GPU drivers should navigate to coordinate every thing. To take advantage of the failings, attackers would want to first set up entry to a goal system, maybe by tricking victims into side-loading malicious apps.

“There are numerous transferring components and no entry restrictions, so GPU drivers are readily accessible to just about each utility,” says Eugene Rodionov, technical chief of the Android Crimson Staff. “What actually makes issues problematic right here is complexity of the implementation—that’s one merchandise which accounts for various vulnerabilities.”

Qualcomm released patches for the failings to “unique gear producers” (OEMs) that use Qualcomm chips and software program within the Android telephones they make. “Relating to the GPU points disclosed by Android Safety Crimson Staff, patches had been made obtainable to OEMs in Could 2024,” a Qualcomm Spokesperson tells WIRED. “We encourage finish customers to use safety updates from system makers as they develop into obtainable.”

The Android ecosystem is advanced, and patches should transfer from a vendor like Qualcomm to OEMs after which get packaged by every particular person system maker and delivered to customers’ telephones. This trickle-down course of generally signifies that gadgets may be left uncovered, however Google has spent years investing to enhance these pipelines and streamline communication.

Nonetheless, the findings are one more reminder that GPUs themselves and the software program supporting them have the potential to develop into a crucial battleground in pc safety.

As Rodionov places it, “combining excessive complexity of the implementation with large accessibility makes it a really attention-grabbing goal for attackers.”



Source link

Tags: DozenFlawsGoogleGPUsMobilePopularQualcommResearchersSoftware
Previous Post

How to Watch It Online

Next Post

The hockey legend who stood tall in cricket-mad India

Next Post
The hockey legend who stood tall in cricket-mad India

The hockey legend who stood tall in cricket-mad India

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

ADVERTISEMENT

Premium Content

Chargers shake Bengals late, note difference under Jim Harbaugh

Chargers shake Bengals late, note difference under Jim Harbaugh

November 18, 2024
Palestinian gunman kills Israeli soldiers as UN warns over W Bank operation

Palestinian gunman kills Israeli soldiers as UN warns over W Bank operation

February 4, 2025

U.S. Fighter Jet Shot Down Over Red Sea by Apparent Friendly Fire

December 22, 2024

Browse by Category

  • APAC
  • Entertainment
  • Europe
  • Lifestyle
  • MENA
  • Sports
  • Tech
  • Travel
  • US
  • World

Browse by Tags

Amazon attack attacks ceasefire China City Collection Conflict Day dead deal Deals Donald Fall Football Gaza Hamas India Iran Israel Israeli killed Live Man News ReadytoWear Review Russia Russian South Spring strike strikes talks Top travel Trump Trumps U.S Ukraine war Week Win World Years
City and Coffee

We provide the most reliable and up-to-date news from around the globe. Stay informed with our unbiased coverage of the latest events, trends, and stories. Trust us as your daily source for breaking news and insightful analysis

Browse by Tag

Amazon attack attacks ceasefire China City Collection Conflict Day dead deal Deals Donald Fall Football Gaza Hamas India Iran Israel Israeli killed Live Man News ReadytoWear Review Russia Russian South Spring strike strikes talks Top travel Trump Trumps U.S Ukraine war Week Win World Years

Recent Posts

  • Iran war live: Lebanon, Israel extend truce; Tehran ready for more US talks | US-Israel war on Iran News
  • Catholic Clergy Can Minister Within Illinois ICE Facility After Legal Agreement
  • Switzerland finally to open secret files on Nazis’ Auschwitz ‘Angel of Death’
  • Israel and Lebanon agree to extend ceasefire, US state department says
No Result
View All Result
  • Home
  • World
  • US
  • Europe
  • MENA
  • APAC
  • Tech
  • Entertainment
  • Travel
  • Lifestyle
  • Sports
  • Blogs

© 2024 All Rights Reserved | cityandcoffee.com

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?