An issue was discovered on XIAOMI AI speaker MDZ-25-DT 1.34.36, and 1.40.14
Published Mar 5, 2020
6.8
MEDIUMCVSS 3.1
EPSS 0.56%
Description
An issue was discovered on XIAOMI AI speaker MDZ-25-DT 1.34.36, and 1.40.14. Attackers can get root shell by accessing the UART interface and then they can read Wi-Fi SSID or password, read the dialogue text files between users and XIAOMI AI speaker, use Text-To-Speech tools pretend XIAOMI speakers' voice achieve social engineering attacks, eavesdrop on users and record what XIAOMI AI speaker hears, delete the entire XIAOMI AI speaker system, modify system files, stop voice assistant service, start the XIAOMI AI speaker’s SSH service as a backdoor
Affected products
No data.
- 1.34.36
- 1.40.14
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (4)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2020-29824 Advisory
- https://github.com/Jian-Xian/CVE-POC/blob/master/CVE-2020-8994.md x_refsource_MISCExploitThird Party Advisory
- https://www.usenix.org/sites/default/files/soups2018posters-lau.pdf x_refsource_MISCTechnical DescriptionThird Party Advisory
- https://youtu.be/yCadG38yZW8 x_refsource_MISCExploitThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2020-29824 | Advisory | |
| https://github.com/Jian-Xian/CVE-POC/blob/master/CVE-2020-8994.md | x_refsource_MISCExploitThird Party Advisory | |
| https://www.usenix.org/sites/default/files/soups2018posters-lau.pdf | x_refsource_MISCTechnical DescriptionThird Party Advisory | |
| https://youtu.be/yCadG38yZW8 | x_refsource_MISCExploitThird Party Advisory |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
No data
Red Hat
No data
GitHub
No data