CVE-2018-20523

Xiaomi Stock Browser 10.2.4.g on Xiaomi Redmi Note 5 Pro devices and other Redmi Android phones allows content provider injection. In other words, a third-party application can read the user's cleartext browser history via an app.provider.query content://com.android.browser.searchhistory/searchhistory request.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mi:stock_browser:10.2.4g:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:mi:redmi_7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_7:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:mi:redmi_note_7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_note_7:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:mi:redmi_note_6_pro_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_note_6_pro:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:mi:redmi_6_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_6:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:mi:redmi_6a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_6a:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:mi:redmi_s2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_s2:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:mi:redmi_note_5_pro_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_note_5_pro:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:mi:redmi_k20_pro_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_k20_pro:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:mi:redmi_k20_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_k20:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:mi:redmi_7a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_7a:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:mi:redmi_go_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_go:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:mi:redmi_note_5_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_note_5:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:mi:redmi_y3_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_y3:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:mi:redmi_note_7s_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_note_7s:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:mi:redmi_s2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_s2:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:mi:redmi_4a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_4a:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:mi:redmi_note_4_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_note_4:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:mi:redmi_5_plus_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_5_plus:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:mi:redmi_note_5a_prime_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mi:redmi_note_5a_prime:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:01

Type Values Removed Values Added
References () http://packetstormsecurity.com/files/163796/Xiaomi-10.2.4.g-Information-Disclosure.html - Exploit, Third Party Advisory, VDB Entry () http://packetstormsecurity.com/files/163796/Xiaomi-10.2.4.g-Information-Disclosure.html - Exploit, Third Party Advisory, VDB Entry
References () https://sec.xiaomi.com - Broken Link, Vendor Advisory () https://sec.xiaomi.com - Broken Link, Vendor Advisory
References () https://vishwarajbhattrai.wordpress.com/2019/03/22/content-provider-injection-in-xiaomi-stock-browser - Exploit, Third Party Advisory () https://vishwarajbhattrai.wordpress.com/2019/03/22/content-provider-injection-in-xiaomi-stock-browser - Exploit, Third Party Advisory

Information

Published : 2019-06-07 16:29

Updated : 2024-11-21 04:01


NVD link : CVE-2018-20523

Mitre link : CVE-2018-20523

CVE.ORG link : CVE-2018-20523


JSON object : View

Products Affected

mi

  • redmi_note_5_pro
  • redmi_7_firmware
  • redmi_6a_firmware
  • redmi_note_7
  • redmi_5_plus_firmware
  • redmi_note_5a_prime
  • redmi_4a
  • stock_browser
  • redmi_k20
  • redmi_note_6_pro_firmware
  • redmi_note_4
  • redmi_5_plus
  • redmi_note_5a_prime_firmware
  • redmi_note_7s_firmware
  • redmi_go_firmware
  • redmi_6a
  • redmi_7a
  • redmi_note_5_firmware
  • redmi_go
  • redmi_note_7s
  • redmi_note_5_pro_firmware
  • redmi_7
  • redmi_s2
  • redmi_s2_firmware
  • redmi_note_4_firmware
  • redmi_7a_firmware
  • redmi_note_6_pro
  • redmi_y3
  • redmi_k20_pro_firmware
  • redmi_6
  • redmi_k20_pro
  • redmi_note_7_firmware
  • redmi_note_5
  • redmi_y3_firmware
  • redmi_6_firmware
  • redmi_k20_firmware
  • redmi_4a_firmware
CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')