CVE-2020-13472

MEDIUM

Gigadevice GD32F103 - Info Disclosure

Title source: llm
STIX 2.1

Description

The flash memory readout protection in Gigadevice GD32F103 devices allows physical attackers to extract firmware via the debug interface by utilizing the DMA module.

References (1)

Core 1
Core References
Exploit, Technical Description, Third Party Advisory x_refsource_misc
https://www.usenix.org/system/files/woot20-paper-obermaier.pdf

Scores

CVSS v3 4.6
EPSS 0.0039
EPSS Percentile 30.4%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Details

CWE
CWE-668
Status published
Products (1)
gigadevice/gd32f103_firmware
Published Aug 31, 2020
Tracked Since Feb 18, 2026