Vulnerability Details CVE-2019-15027
The MediaTek Embedded Multimedia Card (eMMC) subsystem for Android on MT65xx, MT66xx, and MT8163 SoC devices allows attackers to execute arbitrary commands as root via shell metacharacters in a filename under /data, because clear_emmc_nomedia_entry in platform/mt6577/external/meta/emmc/meta_clr_emmc.c invokes 'system("/system/bin/rm -r /data/' followed by this filename upon an eMMC clearance from a Meta Mode boot. NOTE: compromise of Fire OS on the Amazon Echo Dot would require a second hypothetical vulnerability that allows creation of the required file under /data.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.024
EPSS Ranking 84.2%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Products affected by CVE-2019-15027
-
cpe:2.3:h:mediatek:mt6577:-
-
cpe:2.3:h:mediatek:mt6625:-
-
cpe:2.3:h:mediatek:mt8163:-
-
cpe:2.3:o:mediatek:mt6577_firmware:-
-
cpe:2.3:o:mediatek:mt6625_firmware:-
-
cpe:2.3:o:mediatek:mt8163_firmware:-