CVE-2020-27212
7.0
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.0 / Impact: 5.9
Source: NVD
Description
STMicroelectronics STM32L4 devices through 2020-10-19 have incorrect access control. The flash read-out protection (RDP) can be degraded from RDP level 2 (no access via debug interface) to level 1 (limited access via debug interface) by injecting a fault during the boot phase.
Affected (1)
Products: St: Stm32cubel4 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.16.0 |
| Running on/with | Platform Versions |
|---|---|
St Stm32l412c8 | All versions |
St Stm32l412cb | All versions |
St Stm32l412k8 | All versions |
St Stm32l412kb | All versions |
St Stm32l412r8 | All versions |
St Stm32l412rb | All versions |
St Stm32l412t8 | All versions |
St Stm32l412tb | All versions |
St Stm32l422cb | All versions |
St Stm32l422kb | All versions |
St Stm32l422rb | All versions |
St Stm32l422tb | All versions |
St Stm32l431cb | All versions |
St Stm32l431cc | All versions |
St Stm32l431kb | All versions |
St Stm32l431kc | All versions |
St Stm32l431rb | All versions |
St Stm32l431rc | All versions |
St Stm32l431vc | All versions |
St Stm32l432kb | All versions |
St Stm32l432kc | All versions |
St Stm32l433cb | All versions |
St Stm32l433cc | All versions |
St Stm32l433rb | All versions |
St Stm32l433rc | All versions |
St Stm32l433vc | All versions |
St Stm32l442kc | All versions |
St Stm32l443cc | All versions |
St Stm32l443rc | All versions |
St Stm32l443vc | All versions |
St Stm32l451cc | All versions |
St Stm32l451ce | All versions |
St Stm32l451rc | All versions |
St Stm32l451re | All versions |
St Stm32l451vc | All versions |
St Stm32l451ve | All versions |
St Stm32l452cc | All versions |
St Stm32l452ce | All versions |
St Stm32l452rc | All versions |
St Stm32l452re | All versions |
St Stm32l452vc | All versions |
St Stm32l452ve | All versions |
St Stm32l462ce | All versions |
St Stm32l462re | All versions |
St Stm32l462ve | All versions |
St Stm32l471qe | All versions |
St Stm32l471qg | All versions |
St Stm32l471re | All versions |
St Stm32l471rg | All versions |
St Stm32l471ve | All versions |
St Stm32l471vg | All versions |
St Stm32l471ze | All versions |
St Stm32l471zg | All versions |
St Stm32l475rc | All versions |
St Stm32l475re | All versions |
St Stm32l475rg | All versions |
St Stm32l475vc | All versions |
St Stm32l475ve | All versions |
St Stm32l475vg | All versions |
St Stm32l476je | All versions |
St Stm32l476jg | All versions |
St Stm32l476me | All versions |
St Stm32l476mg | All versions |
St Stm32l476qe | All versions |
St Stm32l476qg | All versions |
St Stm32l476rc | All versions |
St Stm32l476re | All versions |
St Stm32l476rg | All versions |
St Stm32l476vc | All versions |
St Stm32l476ve | All versions |
St Stm32l476vg | All versions |
St Stm32l476ze | All versions |
St Stm32l476zg | All versions |
St Stm32l486jg | All versions |
St Stm32l486qg | All versions |
St Stm32l486rg | All versions |
St Stm32l486vg | All versions |
St Stm32l486zg | All versions |
St Stm32l496ae | All versions |
St Stm32l496ag | All versions |
St Stm32l496qe | All versions |
St Stm32l496qg | All versions |
St Stm32l496re | All versions |
St Stm32l496rg | All versions |
St Stm32l496ve | All versions |
St Stm32l496vg | All versions |
St Stm32l496wg | All versions |
St Stm32l496ze | All versions |
St Stm32l496zg | All versions |
St Stm32l4a6ag | All versions |
St Stm32l4a6qg | All versions |
St Stm32l4a6rg | All versions |
St Stm32l4a6vg | All versions |
St Stm32l4a6zg | All versions |
References (6)
Source: cve@mitre.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.