CVE-2020-12485

MEDIUM

Frame Touch - DoS

Title source: llm
STIX 2.1

Description

The frame touch module does not make validity judgments on parameter lengths when processing specific parameters,which caused out of the boundary when memory access.The vulnerability eventually leads to a local DOS on the device.

References (1)

Core 1
Core References

Scores

CVSS v3 5.5
EPSS 0.0004
EPSS Percentile 14.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Details

CWE
CWE-125
Status published
Products (1)
vivo/frame_touch_module 10
Published Nov 10, 2020
Tracked Since Feb 18, 2026