CVE-2020-12485: Vivo Frame Touch Module

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

The frame touch module does not make validity judgments on parameter lengths when processing specific parameters,which caused out of the boundary when memory access.The vulnerability eventually leads to a local DOS on the device.

Affected products

  • Vivo Frame Touch Module: version 10 only

Published 2020-11-10. Last modified 2026-06-17.