peter bassill · operator
$ cve CVE-2019-15027 JSON

CVE-2019-15027

9.8
CRITICAL · CVSS 3.0 · EPSS 3.2% (pctl 88)

In your normal cycle

Critical by CVSS (9.8), but no sign of active exploitation.

Description

The MediaTek Embedded Multimedia Card (eMMC) subsystem for Android on MT65xx, MT66xx, and MT8163 SoC devices allows attackers to execute arbitrary commands as root via shell metacharacters in a filename under /data, because clear_emmc_nomedia_entry in platform/mt6577/external/meta/emmc/meta_clr_emmc.c invokes 'system("/system/bin/rm -r /data/' followed by this filename upon an eMMC clearance from a Meta Mode boot. NOTE: compromise of Fire OS on the Amazon Echo Dot would require a second hypothetical vulnerability that allows creation of the required file under /data.

Scoring

CVSS9.8 (CRITICAL, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS3.18% — more likely to be exploited than 88% of all CVEs
WeaknessCWE-78
On CISA KEVno
Public exploitnone known
Published2019-08-14
Last modified2026-06-17

Affected (6)

VendorProduct
mediatekmt6577
mediatekmt6577 firmware
mediatekmt6625
mediatekmt6625 firmware
mediatekmt8163
mediatekmt8163 firmware

References

→ the Explorer  ·  watch your stack  ·  NVD