CVE-2020-13468

Gigadevice GD32F130 devices allow physical attackers to escalate their debug interface permissions via fault injection into inter-IC bonding wires (which have insufficient physical protection).
References
Link Resource
https://www.usenix.org/system/files/woot20-paper-obermaier.pdf Exploit Technical Description Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:gigadevice:gd32f130_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:gigadevice:gd32f130:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2020-08-31 16:15

Updated : 2024-02-04 21:00


NVD link : CVE-2020-13468

Mitre link : CVE-2020-13468

CVE.ORG link : CVE-2020-13468


JSON object : View

Products Affected

gigadevice

  • gd32f130_firmware
  • gd32f130
CWE
CWE-276

Incorrect Default Permissions