The frame touch module does not make validity judgments on parameter lengths when processing specific parameters,which caused out of the boundary when memory access.The vulnerability eventually leads to a local DOS on the device.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://www.vivo.com/en/support/security-advisory-detail?id=2 | vendor advisory |