Описание
The frame touch module does not make validity judgments on parameter lengths when processing specific parameters,which caused out of the boundary when memory access.The vulnerability eventually leads to a local DOS on the device.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:vivo:frame_touch_module:10:*:*:*:*:android:*:*
EPSS
Процентиль: 14%
0.00045
Низкий
5.5 Medium
CVSS3
5.5 Medium
CVSS3
4.9 Medium
CVSS2
Дефекты
CWE-125
CWE-125
Связанные уязвимости
github
больше 3 лет назад
The frame touch module does not make validity judgments on parameter lengths when processing specific parameters,which caused out of the boundary when memory access.The vulnerability eventually leads to a local DOS on the device.
EPSS
Процентиль: 14%
0.00045
Низкий
5.5 Medium
CVSS3
5.5 Medium
CVSS3
4.9 Medium
CVSS2
Дефекты
CWE-125
CWE-125