7.2
CVSSv2

CVE-2019-16253

Published: 25/09/2019 Updated: 24/08/2020
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 643
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Text-to-speech Engine (aka SamsungTTS) application prior to 3.0.02.7 and 3.0.00.101 for Android allows a local malicious user to escalate privileges, e.g., to system privileges. The Samsung case ID is 101755.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

samsung text-to-speech

Github Repositories

Curated list of awesome Android apps making use of Shizuku

awesome-shizuku Shizuku allows normal apps to use system APIs directly with elevated privileges using ADB on non-rooted devices This list compiles a few apps that are known to make use of Shizuku's capabilities More details: shizukurikkaapp/ Pull requests are welcome See Contributing for hints Table of contents Apps Audio Automation Communication Customiz

Exploit I discovered in October of 2022 with androids Package manager binary (pm) and the way it handled debugging flags, patched out by march 2023. Uses CVE-2019-16253 as a payload to obtain a system shell.

K0mraid3s-System-Shell Way back in 2019, a vulnerability that would come to be known as "CVE-2019-16253" was found that affect Samsung's TTS engine in versions prior to 30027 This exploit allowed for a local attacker to escalate privileges to system privileges and was later patched by Samsung Essentially, Samsung's TTS app would blindly accept any data

As of oneui 4.1 with android security patch august 1st of 2023 in android 12, DOES NOT WORK. It might work with update version lower than listed

SMTShell This tool allows most Samsung devices to achieve a system shell (UID 1000) It was patched in OneUI 51, but will work on Android 13 running OneUI 50 or older It should work as far back and Android 90 (and maybe earlier) It also acts similar to Magisk or SuperSU, allowing apps to easily execute system commands via SMTShell-API Usage (with Shizuk

Curated list of awesome Android apps making use of Shizuku app

Shizuku-Apps Shizuku allows normal apps to use system APIs directly with elevated privileges using ADB on non-rooted devices This list compiles a few apps that are known to make use of Shizuku's capabilities More details: shizukurikkaapp/ Pull requests are welcome See Contributing for hints Table of contents Apps Audio Automation Communication Customizati

Curated list of awesome Android apps making use of Shizuku

awesome-shizuku Shizuku allows normal apps to use system APIs directly with elevated privileges using ADB on non-rooted devices This list compiles a few apps that are known to make use of Shizuku's capabilities More details: shizukurikkaapp/ Pull requests are welcome See Contributing for hints Table of contents Apps Audio Automation Communication Customiz

SMT Shell with a twist! Fully updated and upgraded.

#system_shell_2# SMT Shell by BLuFeNiX with a twist of my own UPDATED & UPGRADED #system_shell_2# will allow you to achieve a system shell (UID 1000) This was brought upon me as a challenge to update and upgrade SMT Shell With the updates and upgrades implemented, you can NOW bypass Samsung's One UI 51 patch that was introduced back in Feb but strictly limited

About Run commands as system (uid 1000) on Samsung devices! Includes API for privileged access!

SMTShell This tool allows most Samsung devices to achieve a system shell (UID 1000) It was patched in OneUI 51, but will work on Android 13 running OneUI 50 or older It should work as far back and Android 90 (and maybe earlier) It also acts similar to Magisk or SuperSU, allowing apps to easily execute system commands via SMTShell-API Usage (with Shizuk

Curated list of awesome Android apps making use of Shizuku

awesome-shizuku Shizuku allows normal apps to use system APIs directly with elevated privileges using ADB on non-rooted devices This list compiles a few apps that are known to make use of Shizuku's capabilities More details: shizukurikkaapp/ Pull requests are welcome See Contributing for hints Table of contents Apps Audio Automation Communication Customiz