PT-2024-39 · Gigadevice · Gd32
Published
2023-04-12
·
Updated
2023-04-12
CVSS v4.0
7.0
High
| Vector | AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions:
GigaDevice GD32 versions GD32F1x0, GD32F4xx, and GD32F3x0
Description:
The issue is related to insufficient access control in the GigaDevice GD32 microcontroller firmware, affecting series GD32F1x0, GD32F4xx, and GD32F3x0. Exploitation of this issue may allow an attacker to read data from RAM or modify its state.
Recommendations:
For versions GD32F1x0, GD32F4xx, and GD32F3x0, consider implementing additional access control mechanisms to restrict unauthorized access to RAM.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Gd32