CVE-2021-41850
The system property values can be obtained via getprop by all third-party applications co-located on the device, even those with no permissions granted, exposing the IMEI values to processes without enforcing any access control.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.40%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
An issue was discovered in Luna Simo PPR1.180610.011/202001031830. A pre-installed app with a package name of com.skyroam.silverhelper writes three IMEI values to system properties at system startup. The system property values can be obtained via getprop by all third-party applications co-located on the device, even those with no permissions granted, exposing the IMEI values to processes without enforcing any access control.
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.40% probability · 33th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- bluproducts/g90 firmware · bluproducts/g9 firmware · wikomobile/tommy 3 firmware · wikomobile/tommy 3 plus firmware · luna/simo firmware
- Source
- cve@mitre.org
References
- https://athack.com/session-details/401Third Party Advisory
- https://simowireless.com/Vendor Advisory
- https://www.kryptowire.com/android-firmware-2022/Broken Link
- https://www.kryptowire.com/blog/vsim-vulnerability-within-simo-android-phones-exposed/Exploit, Third Party Advisory
- https://athack.com/session-details/401Third Party Advisory
- https://simowireless.com/Vendor Advisory
- https://www.kryptowire.com/android-firmware-2022/Broken Link
- https://www.kryptowire.com/blog/vsim-vulnerability-within-simo-android-phones-exposed/Exploit, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.