Security Advisory | PcSuite Authentication Vulnerability

Original release date: 2026-06-12

CVE ID

CVE-2026-11535

CVSS 3.1 Base Score

8.1 High (AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N)

Description

The authentication mechanism of a certain function in the PcSuite has a defect, which may result in information leakage within the range of a Bluetooth connection.

Software Versions and Fixes

Temporary Fix

NA

Obtaining Fixed Software

This vulnerability can be fixed by downloading the latest version of PcSuite

Source

Zixuan Wei、Xiaofeng Liu、Xiangpu Song,Yillin Li,Shanqing Guo(School of Cyber Science and Technology, Shandong University)

Update Records

2026-06-12 V1.0 INITIAL

FAQs

NA

vivo Security Procedures

vivo is committed to providing users with best cyber security products and services, and follows the industrial best practice to handle and publish vunerability information.
To report a security vulnerability in vivo products and solutions, please send it to security@vivo.com.
For details, please visit Security Advisory.