Vulnerability Description
The flash memory readout protection in Gigadevice GD32VF103 devices allows physical attackers to extract firmware via the debug interface by utilizing the CPU.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Gigadevice | Gd32Vf103 Firmware | - |
| Gigadevice | Gd32Vf103 | - |
Related Weaknesses (CWE)
References
- https://www.usenix.org/system/files/woot20-paper-obermaier.pdfExploitTechnical DescriptionThird Party Advisory
- https://www.usenix.org/system/files/woot20-paper-obermaier.pdfExploitTechnical DescriptionThird Party Advisory
FAQ
What is CVE-2020-13469?
CVE-2020-13469 is a vulnerability with a CVSS score of 4.6 (MEDIUM). The flash memory readout protection in Gigadevice GD32VF103 devices allows physical attackers to extract firmware via the debug interface by utilizing the CPU.
How severe is CVE-2020-13469?
CVE-2020-13469 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-13469?
Check the references section above for vendor advisories and patch information. Affected products include: Gigadevice Gd32Vf103 Firmware, Gigadevice Gd32Vf103.